IBM Aspera Console cross-site scripting
CVE-2021-38927
7.2HIGH
What is CVE-2021-38927?
IBM Aspera Console 3.4.0 is susceptible to a cross-site scripting vulnerability that permits users to inject arbitrary JavaScript code into the web interface. This malicious code execution can modify the application's intended features, leading to the potential exposure of sensitive credentials during a trusted session. Remediation efforts should be prioritized to ensure the security of user data.
Affected Version(s)
Aspera Console 3.4.0