ZeroHour

CVE-2025-33137

CVSS 3.1
8.8 high
EPSS
<1%p27
Published
()
Modified
Description

IBM Aspera Faspex 5.0.0 through 5.0.12 could allow an authenticated user to obtain sensitive information or perform unauthorized actions on behalf of another user due to client-side enforcement of server-side security.

Vendors
ibm
Products
aspera faspex
Weakness
CWE-602
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.