IBM Aspera Console Cryptographic Vulnerability Allowing Decryption of Sensitive Information

Vulnerability

A vulnerability exists in IBM Aspera Console versions 3.4.0 to 3.4.4, where the application employs cryptographic algorithms that are weaker than expected. This flaw could enable an attacker to decrypt highly sensitive information.

Impact

Exploitation of this vulnerability could lead to the unauthorized decryption of sensitive information, potentially allowing attackers to access confidential data that should remain protected.

Remediation

Users are advised to upgrade to IBM Aspera Console version 3.4.5, available for both Windows and Linux. Instructions for downloading this version can be found on the IBM Support Fix Central website.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
2.6
impact
2.5
exploitability
7.0
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
5.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.