IBM Aspera Faspex Improper Access Control Vulnerability Allowing Unauthorized System Changes

Vulnerability

A vulnerability in IBM Aspera Faspex versions 5.0.0 to 5.0.10 allows privileged users to make system changes without appropriate access controls. This issue stems from improper access management, which could lead to unauthorized modifications within the system.

Impact

Exploitation of this vulnerability could result in unauthorized system changes by privileged users, potentially leading to further security issues or system misconfigurations.

Remediation

Users are advised to upgrade to IBM Aspera Faspex version 5.0.11. Instructions for downloading this version are available on the IBM Support Fix Central website.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
1.9
impact
2.5
exploitability
4.8
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.