Security Advisory

CVE-2024-56472

6.4
MEDIUM

Vulnerability Description

IBM Aspera Shares 1.9.0 through 1.10.0 PL6 is vulnerable to stored cross-site scripting. This vulnerability allows authenticated users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.
Published Date February 5, 2025
Official Source NIST NVD Advisory