IBM Aspera HTTP Gateway Cleartext Storage of Sensitive Information Vulnerability
Vulnerability
A vulnerability exists in IBM Aspera HTTP Gateway versions 2.0.0 through 2.3.1, where sensitive information is stored in clear text within easily accessible files. This information can be read by an unauthenticated user.
Impact
Exploitation of this vulnerability could lead to unauthorized access to sensitive information.
Remediation
Users are advised to upgrade to IBM Aspera HTTP Gateway version 2.3.2. Instructions for downloading this version are available on the IBM Support Fix Central website.
Added: Sep 26, 2025, 4:00 PM
Updated: Sep 26, 2025, 4:00 PM
Vulnerability Rating
Custom Algorithm
spread
0.0impact
2.5exploitability
7.4remediation
7.7relevance
0.6threat
0.0urgency
2.9incentive
5.8Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
