Vulnerability Details CVE-2022-22391
IBM Aspera High-Speed Transfer 4.3.1 and earlier could allow an authenticated user to obtain information from non sensitive operating system files that they should not have access to. IBM X-Force ID: 222059.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 31.6%
CVSS Severity
CVSS v3 Score 4.3
CVSS v2 Score 4.0
Products affected by CVE-2022-22391
-
cpe:2.3:a:ibm:aspera_high-speed_transfer_endpoint:-
-
cpe:2.3:a:ibm:aspera_high-speed_transfer_endpoint:3.9.3
-
cpe:2.3:a:ibm:aspera_high-speed_transfer_endpoint:3.9.6
-
cpe:2.3:a:ibm:aspera_high-speed_transfer_endpoint:4.0.0
-
cpe:2.3:a:ibm:aspera_high-speed_transfer_endpoint:4.3.1
-
cpe:2.3:a:ibm:aspera_high-speed_transfer_server:-
-
cpe:2.3:a:ibm:aspera_high-speed_transfer_server:3.9.3
-
cpe:2.3:a:ibm:aspera_high-speed_transfer_server:3.9.6
-
cpe:2.3:a:ibm:aspera_high-speed_transfer_server:4.0.0
-
cpe:2.3:a:ibm:aspera_high-speed_transfer_server:4.3.1