Known Vulnerabilities for Aspera Faspex by Ibm
Listed below are 10 of the newest known vulnerabilities associated with "Aspera Faspex" by "Ibm".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2023-35906 json | IBM Aspera Faspex 5.0.5 could allow a remote attacked to bypass IP restrictions due to improper access controls. IBM X-Force... | 7.5 - HIGH | 2023-09-05 | 2023-09-08 |
| CVE-2023-30995 json | IBM Aspera Faspex 4.0 through 4.4.2 and 5.0 through 5.0.5 could allow a malicious actor to bypass IP whitelist restrictions u... | 7.5 - HIGH | 2023-09-08 | 2023-10-10 |
| CVE-2023-27875 json | IBM Aspera Faspex 5.0.4 could allow a user to change other user's credentials due to improper access controls. IBM X-Force ID... | 7.5 - HIGH | 2023-03-16 | 2023-11-07 |
| CVE-2023-27874 json | IBM Aspera Faspex 4.4.2 is vulnerable to an XML external entity injection (XXE) attack when processing XML data. A remote aut... | 8.8 - HIGH | 2023-03-21 | 2023-11-07 |
| CVE-2023-27873 json | IBM Aspera Faspex 4.4.2 could allow a remote authenticated attacker to obtain sensitive credential information using speciall... | 6.5 - MEDIUM | 2023-03-21 | 2023-11-07 |
| CVE-2023-27871 json | IBM Aspera Faspex 4.4.2 could allow a remote attacker to obtain sensitive credential information for an external user, using ... | 7.5 - HIGH | 2023-03-21 | 2023-11-07 |
| CVE-2023-24965 json | IBM Aspera Faspex 5.0.5 does not restrict or incorrectly restricts access to a resource from an unauthorized actor. IBM X-Fo... | 5.3 - MEDIUM | 2023-09-08 | 2023-09-12 |
| CVE-2023-22870 json | IBM Aspera Faspex 5.0.5 transmits sensitive information in cleartext which could be obtained by an attacker using man in the ... | 5.9 - MEDIUM | 2023-09-05 | 2023-09-08 |
| CVE-2023-22868 json | IBM Aspera Faspex 4.4.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript ... | 5.4 - MEDIUM | 2023-02-17 | 2023-11-07 |
| CVE-2022-47986 json | IBM Aspera Faspex 4.4.2 Patch Level 1 and earlier could allow a remote attacker to execute arbitrary code on the system, cau... | 9.8 - CRITICAL | 2023-02-17 | 2023-04-26 |