CVE-2022-43840
4.3MEDIUMIBM Aspera Console 3.4.0 through 3.4.4 is vulnerable to an XPath injection vulnerability, which could allow an authenticated attacker to exfiltrate sensitive application data and/or determine the str
Published: 4/14/2025Updated: 7/24/2025
Description
IBM Aspera Console 3.4.0 through 3.4.4 is vulnerable to an XPath injection vulnerability, which could allow an authenticated attacker to exfiltrate sensitive application data and/or determine the structure of the XML document.
AI AnalysisPowered by AI
Affected Products
ibmaspera_console
References
- https://www.ibm.com/support/pages/node/7169766Vendor Advisory