Show filters
37 Total Results
Displaying 31-37 of 37
Sort by:
Attacker Value
Unknown
CVE-2023-22868
Disclosure Date: February 17, 2023 (last updated November 08, 2023)
IBM Aspera Faspex 4.4.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 244117.
0
Attacker Value
Unknown
CVE-2022-22497
Disclosure Date: May 24, 2022 (last updated October 07, 2023)
IBM Aspera Faspex 4.4.1 and 5.0.0 could allow unauthorized access due to an incorrectly computed security token. IBM X-Force ID: 226951.
0
Attacker Value
Unknown
CVE-2020-4434
Disclosure Date: June 09, 2020 (last updated February 21, 2025)
Certain IBM Aspera applications are vulnerable to buffer overflow based on the product configuration and valid authentication, which could allow an attacker with intimate knowledge of the system to execute arbitrary code or perform a denial-of-service (DoS) through the http fallback service. IBM X-Force ID: 180900.
0
Attacker Value
Unknown
CVE-2020-4433
Disclosure Date: June 09, 2020 (last updated February 21, 2025)
Certain IBM Aspera applications are vulnerable to a stack-based buffer overflow, caused by improper bounds checking. This could allow a remote attacker with intimate knowledge of the server to execute arbitrary code on the system with the privileges of root or cause server to crash. IBM X-Force ID: 180814.
0
Attacker Value
Unknown
CVE-2020-4435
Disclosure Date: June 09, 2020 (last updated February 21, 2025)
Certain IBM Aspera applications are vulnerable to arbitrary memory corruption based on the product configuration, which could allow an attacker with intimate knowledge of the system to execute arbitrary code or perform a denial-of-service (DoS) through the http fallback service. IBM X-Force ID: 180901.
0
Attacker Value
Unknown
CVE-2020-4432
Disclosure Date: June 09, 2020 (last updated February 21, 2025)
Certain IBM Aspera applications are vulnerable to command injection after valid authentication, which could allow an attacker with intimate knowledge of the system to execute commands in a SOAP API. IBM X-Force ID: 180810.
0
Attacker Value
Unknown
CVE-2020-4436
Disclosure Date: June 09, 2020 (last updated February 21, 2025)
Certain IBM Aspera applications are vulnerable to buffer overflow after valid authentication, which could allow an attacker with intimate knowledge of the system to execute arbitrary code through a service. IBM X-Force ID: 180902.
0