PT-2025-31460 · Ibm · Aspera Faspex
Published
2025-07-29
·
Updated
2025-07-31
·
CVE-2025-36039
CVSS v2.0
6.8
Medium
| Vector | AV:N/AC:L/Au:S/C:N/I:C/A:N |
Name of the Vulnerable Software and Affected Versions
IBM Aspera Faspex versions 5.0.0 through 5.0.12.1
Description
IBM Aspera Faspex versions 5.0.0 through 5.0.12.1 may allow an authenticated user to perform unauthorized actions due to client-side enforcement of server-side security mechanisms.
Recommendations
Update IBM Aspera Faspex to a version later than 5.0.12.1.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Aspera Faspex