PT-2024-12611 · Ibm · Ibm Aspera Faspex
Published
2024-04-19
·
Updated
2024-04-30
·
CVE-2023-37397
CVSS v3.1
4.4
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
IBM Aspera Faspex versions 5.0.0 through 5.0.7
Description
The issue is related to improper encryption of certain data, which could allow a local user to obtain or modify sensitive information.
Recommendations
For IBM Aspera Faspex versions 5.0.0 through 5.0.7, update to a version that properly encrypts sensitive data to prevent unauthorized access or modification.
Fix
Inadequate Encryption Strength
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ibm Aspera Faspex