Security Advisory

CVE-2024-38318

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2025-02-05 22:49:18
Last updated 2025-02-22 20:56:28
Assigner ibm
CVSS score 4.8
State PUBLISHED

Description

IBM Aspera Shares 1.9.0 through 1.10.0 PL6 is vulnerable to HTML injection. A remote attacker could inject malicious HTML code, which when viewed, would be executed in the victim's Web browser within the security context of the hosting site.