PT-2025-41382 · Ibm · Aspera Faspex

Published

2025-10-09

·

Updated

2025-10-09

·

CVE-2023-37401

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions IBM Aspera Faspex versions 5.0.0 through 5.0.13.1
Description The software utilizes a cross-domain policy file that includes domains that should not be trusted. This could potentially allow for unauthorized access or data manipulation.
Recommendations Update to a version beyond 5.0.13.1.

Fix

Weakness Enumeration

Related Identifiers

CVE-2023-37401

Affected Products

Aspera Faspex