IBM Aspera Faspex
cpe:2.3:a:ibm:aspera_faspex:*:*:*:*:*:*:*
- >= 5.0.0, <= 5.0.13.1
A vulnerability exists in IBM Aspera Faspex versions 5.0.0 to 5.0.13.1, where the application uses a cross-domain policy file that includes untrusted domains. This permissive policy could potentially allow for security risks by enabling interactions with malicious domains.
This vulnerability could lead to security issues by allowing untrusted domains to be accessed, potentially facilitating cross-domain attacks or data leakage.
Users are advised to upgrade to IBM Aspera Faspex version 5.0.14, available through the IBM Update Catalog.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.