Description
IBM Aspera Faspex 4.4.1 and 5.0.0 could allow unauthorized access due to an incorrectly computed security token. IBM X-Force ID: 226951.
CVSS breakdown
CVSS 3.0
Privileges Required
None
User Interaction
None
Attack Vector
Network
Integrity
None
Confidentiality
High
Availability
None
Attack Complexity
Low
Scope
Unchanged
RL
O
RC
Changed
E
Unchanged
Affected products
- ibm / aspera_faspex4.4.1 – 4.4.1
- ibm / aspera_faspex5.0.0 – 5.0.0