IBM Aspera Faspex 4.4.2 could allow a remote attacker to obtain sensitive credential information for an external user, using a specially crafted SQL query. IBM X-Force ID: 249613.
| Software | From | Fixed in |
|---|---|---|
| ibm / aspera_faspex | - | 4.4.2.x |
| ibm / aspera_faspex | 4.4.2-patch_level_2 | 4.4.2-patch_level_2.x |
| ibm / aspera_faspex | 4.4.2-patch_level_1 | 4.4.2-patch_level_1.x |