IBM Aspera HSTS
cpe:2.3:a:ibm:aspera_high-speed_transfer_server:*:*:*:*:*:*:*
- >= 1.5.1, <= 1.5.19
An authentication bypass vulnerability has been identified in IBM Aspera High-Speed Transfer Server for Cloud Pak for Integration (CP4I) versions 1.5.1 through 1.5.19. This vulnerability allows a transfer client to access files in the server's local storage that should be restricted, potentially leading to unauthorized file access.
Exploitation of this vulnerability could result in unauthorized access to files in the server's local storage.
Users can upgrade to IBM Aspera High-Speed Transfer Server for Cloud Pak for Integration (CP4I) version 1.5.20 to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.