CVE-2023-22869: IBM Aspera Faspex information disclosure
IBM Aspera Faspex 5.0.0 through 5.0.7 stores potentially sensitive information in log files that could be read by a local user. IBM X-Force ID: 244119.
Other sources
IBM Aspera Faspex stores potentially sensitive information in log files that could be read by a local user.
— IBM
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-22869?
CVE-2023-22869 has not been explicitly assigned a CVSS score, but it involves exposure of sensitive information which could pose a security risk.
How do I fix CVE-2023-22869?
To fix CVE-2023-22869, it is recommended to upgrade IBM Aspera Faspex to version 5.0.8 or later.
What are the affected versions of CVE-2023-22869?
CVE-2023-22869 affects IBM Aspera Faspex versions 5.0.0 through 5.0.7.
Who is impacted by CVE-2023-22869?
Local users with access to the log files of IBM Aspera Faspex may be impacted by CVE-2023-22869.
What kind of sensitive information is stored in the logs for CVE-2023-22869?
CVE-2023-22869 may lead to exposure of potentially sensitive information that is logged by IBM Aspera Faspex.