PT-2026-6553 · Ibm · Ibm Aspera Console

Published

2026-02-05

·

Updated

2026-02-12

·

CVE-2025-13379

CVSS v3.1

8.6

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:L
Name of the Vulnerable Software and Affected Versions IBM Aspera Console versions 3.4.0 through 3.4.8
Description The software is susceptible to a SQL injection issue. A remote attacker could potentially send crafted SQL statements to access, modify, or delete data within the back-end database. The attacker could exploit this through specially crafted SQL statements.
Recommendations IBM Aspera Console versions 3.4.0 through 3.4.8 are affected and should be updated.

Fix

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2025-13379

Affected Products

Ibm Aspera Console