IBM Aspera High-Speed Transfer Endpoint
cpe:2.3:a:ibm:aspera_high-speed_transfer_endpoint:*:*:*:*:*:*:*
- >= 3.7.4, <= 4.4.7 Fix Pack 1
A buffer overflow vulnerability has been identified in the asperahttpd component of IBM Aspera High-Speed Transfer Endpoint and IBM Aspera High-Speed Transfer Server, both versions 3.7.4 prior to 4.4.7 Fix Pack 1. This vulnerability could be exploited to cause a denial of service and potentially lead to authentication bypass or remote code execution.
Exploitation of this vulnerability could result in a denial of service, authentication bypass, or remote code execution.
Users can upgrade to IBM Aspera High-Speed Transfer Server or Endpoint version 4.4.7 Fix Pack 2. Instructions for downloading this version are available on the IBM Support Fix Central website.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.