First published: Mon Apr 14 2025(Updated: )
IBM Aspera Console 3.4.0 through 3.4.4 could disclose sensitive information in HTTP headers that could be used in further attacks against the system.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Aspera Console | >=3.4.0<=3.4.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-43852 has been rated as a medium severity vulnerability due to its potential for disclosing sensitive information.
CVE-2022-43852 affects IBM Aspera Console versions 3.4.0 to 3.4.4 by potentially exposing sensitive information in HTTP headers.
CVE-2022-43852 can lead to further attacks that exploit the disclosed sensitive information to compromise the system.
To mitigate CVE-2022-43852, it is recommended to update IBM Aspera Console to a version later than 3.4.4.
Yes, CVE-2022-43852 is publicly acknowledged and documented in vulnerability databases.