📦 Aspera Shares

by Ibm

🔍 What is Aspera Shares?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-56473

MEDIUM CVSS 5.3 Feb 5, 2025

IBM Aspera Shares versions 1.9.0 through 1.10.0 PL6 improperly validate 'Client-IP' headers, allowing attackers to spoof their IP addresses in log files. This affects organizations using these version...

CVE-2024-38318

MEDIUM CVSS 4.8 Feb 5, 2025

IBM Aspera Shares versions 1.9.0 through 1.10.0 PL6 are vulnerable to HTML injection, allowing attackers to inject malicious HTML that executes in victims' browsers within the site's security context....

CVE-2024-56471

MEDIUM CVSS 5.4 Feb 5, 2025

IBM Aspera Shares versions 1.9.0 through 1.10.0 PL6 contain a server-side request forgery (SSRF) vulnerability that allows authenticated attackers to make unauthorized requests from the server. This c...

CVE-2024-38316

MEDIUM CVSS 4.3 Feb 5, 2025

IBM Aspera Shares versions 1.9.0 through 1.10.0 PL6 have an email rate limiting vulnerability that allows authenticated users to send excessive emails. This could lead to email flooding attacks or den...