CVE-2024-38315 - IBM Aspera Shares Authentication Bypass

1 month ago 15
ARTICLE AD BOX
CVE ID : CVE-2024-38315
Published : Sept. 16, 2024, 3:15 p.m. | 24 minutes ago
Description : IBM Aspera Shares 1.0 through 1.10.0 PL3 does not invalidate session after a password reset which could allow an authenticated user to impersonate another user on the system.
Severity: 6.3 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Read Entire Article