PT-2024-12125 · Ibm · Ibm Aspera Faspex

Published

2024-04-19

·

Updated

2024-04-29

·

CVE-2023-27279

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions IBM Aspera Faspex versions 5.0.0 through 5.0.7
Description The issue is related to missing API rate limiting, which could allow a user to cause a denial of service.
Recommendations For IBM Aspera Faspex versions 5.0.0 through 5.0.7, consider implementing API rate limiting to prevent denial of service attacks. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Weakness Enumeration

Related Identifiers

CVE-2023-27279

Affected Products

Ibm Aspera Faspex