CVE-2022-43841

EUVD-2022-46811
IBM Aspera Console 3.4.0 through 3.4.2 PL9 allows web pages to be stored locally which can be read by another user on the system.  IBM X-Force ID:  239078.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
4 MEDIUM
LOCAL
LOW
NONE
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
ibmCNA
4 MEDIUM
LOCAL
LOW
NONE
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 11%
Affected Products (NVD)
VendorProductVersion
ibmaspera_console
3.4.0 ≤
𝑥
≤ 3.4.2
ibmaspera_console
3.4.2:patch_level_1
ibmaspera_console
3.4.2:patch_level_2
ibmaspera_console
3.4.2:patch_level_3
ibmaspera_console
3.4.2:patch_level_4
ibmaspera_console
3.4.2:patch_level_5
ibmaspera_console
3.4.2:patch_level_6
ibmaspera_console
3.4.2:patch_level_7
ibmaspera_console
3.4.2:patch_level_8
ibmaspera_console
3.4.2:patch_level_9
𝑥
= Vulnerable software versions