VendorsIBMaspera_connectall versions
Vulnerabilities

IBM Aspera Connect

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

5CVEs
CVE-2023-27284
IBM Aspera code execution
Published 2023-03-28 · Modified
9.8EPSS 0.007
CVE-2023-27286
IBM Aspera code execution
Published 2023-03-28 · Modified
9.8EPSS 0.007
CVE-2020-4545
IBM Aspera Connect 3.9.9 could allow a remote attacker to execute arbitrary code on the system, caused by improper loading of Dynamic Link Libraries by the import feature. By persuading a victim to open a specially-crafted .DLL file, an attacker could exploit this vulnerability to execute arbitrary code on the system. IBM X-Force ID: 183190.
Published 2020-09-04 · Modified
9.3EPSS 0.030
CVE-2023-27285
IBM Aspera buffer overflow
Published 2023-06-04 · Modified
8.4EPSS 0.002
CVE-2023-22862
IBM Aspera information disclosure
Published 2023-06-04 · Modified
7.5EPSS 0.005