IBM Aspera Faspex 5.0.0 and 5.0.1 is vulnerable to HTTP header injection, caused by improper validation of input by the HOST headers. This could allow an attacker to conduct various attacks against the vulnerable system, including cross-site scripting, cache poisoning or session hijacking. IBM X-Force ID: 222562.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: ibm
Published: 2024-03-05T19:58:53.516Z
Updated: 2024-08-03T03:14:54.693Z
Reserved: 2022-01-03T22:29:20.950Z
Link: CVE-2022-22399
Vulnrichment
Updated: 2024-05-23T19:01:16.138Z
NVD
Status : Awaiting Analysis
Published: 2024-03-05T20:16:00.620
Modified: 2024-03-06T15:18:08.093
Link: CVE-2022-22399
Redhat
No data.