ZeroHour

CVE-2025-13148

CVSS 3.1
6.5 medium
EPSS
<1%p20
Published
()
Modified
Description

IBM Aspera Orchestrator 4.0.0 through 4.1.0 could allow could an authenticated user to change the password of another user without prior knowledge of that password.

Vendors
ibm
Products
aspera orchestrator
Weakness
CWE-620
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N

In the news

No ingested article mentions this CVE yet.