← Back

CVE-2024-56473

nvd nist
Published: Feb 5, 2025Modified: Jun 17, 2026

JSON object

Loading...
5.3
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Exploitability: 3.9 / Impact: 1.4
Source: psirt@us.ibm.com (Secondary)

Description

IBM Aspera Shares 1.9.0 through 1.10.0 PL6 could allow an attacker to spoof their IP address, which is written to log files, due to improper verification of 'Client-IP' headers.

Affected (8)

Products: Ibm: Aspera Shares
1 product
Aspera Shares
Configuration A
8 vulnerable
Vulnerable SoftwareAffected Versions
Ibm
From 1.9.0 to 1.10.0
Version 1.10.0
Version 1.10.0 patch_level1
Version 1.10.0 patch_level2
Version 1.10.0 patch_level3
Version 1.10.0 patch_level4
Version 1.10.0 patch_level5
Version 1.10.0 patch_level6

References (1)

Source: psirt@us.ibm.com
Vendor Advisory

Timeline

No history available yet.