CVE-2024-45096

CWE-5483 documents3 sources
Severity
6.5MEDIUM
EPSS
0.1%
top 65.54%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedSep 5

Description

IBM Aspera Faspex 5.0.0 through 5.0.9 could allow a user with access to the package to obtain sensitive information through a directory listing.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:NExploitability: 2.8 | Impact: 3.6

Affected Packages2 packages

NVDibm/aspera_faspex5.0.05.0.10
CVEListV5ibm/aspera_faspex5.0.05.0.9

🔴Vulnerability Details

2
GHSA
GHSA-3pj2-86g9-6mf7: IBM Aspera Faspex 52024-09-05
CVEList
IBM Aspera Faspex information disclosure2024-09-05
CVE-2024-45096 (MEDIUM CVSS 6.5) | IBM Aspera Faspex 5.0.0 through 5.0 | cvebase.io