IBM Aspera High-Speed Transfer Endpoint
cpe:2.3:a:ibm:aspera_high-speed_transfer_endpoint:*:*:*:*:*:*:*
- >= 3.7.4, <= 4.4.7 Fix Pack 1
A denial-of-service vulnerability has been identified in the asperahttpd component of IBM Aspera High-Speed Transfer Endpoint and IBM Aspera High-Speed Transfer Server, both versions 3.7.4 prior to 4.4.7 Fix Pack 1. An unauthenticated user can cause the asperahttpd service to crash, leading to a service disruption.
Exploitation of this vulnerability can cause the asperahttpd service to crash, leading to a denial-of-service condition.
Users can upgrade to IBM Aspera High-Speed Transfer Server or Endpoint version 4.4.7 Fix Pack 2. Instructions for downloading this version are available on the IBM Support Fix Central website.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.