IBM Aspera Faspex 5.0.0 through 5.0.9 could allow a user to bypass intended access restrictions and conduct resource modification.
Advisories
Source ID Title
EUVD EUVD EUVD-2024-41304 IBM Aspera Faspex 5.0.0 through 5.0.9 could allow a user to bypass intended access restrictions and conduct resource modification.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Fri, 06 Sep 2024 13:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-436
CPEs cpe:2.3:a:ibm:aspera_faspex:*:*:*:*:*:*:*:*

Thu, 05 Sep 2024 16:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Thu, 05 Sep 2024 15:45:00 +0000

Type Values Removed Values Added
Description IBM Aspera Faspex 5.0.0 through 5.0.9 could allow a user to bypass intended access restrictions and conduct resource modification.
Title IBM Aspera Faspex bypass security
First Time appeared Ibm
Ibm aspera Faspex
Weaknesses CWE-650
CPEs cpe:2.3:a:ibm:aspera_faspex:5.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:aspera_faspex:5.0.9:*:*:*:*:*:*:*
Vendors & Products Ibm
Ibm aspera Faspex
References
Metrics cvssV3_1

{'score': 5.9, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:H/A:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published:

Updated: 2024-09-05T15:46:21.130Z

Reserved: 2024-08-21T19:11:14.497Z

Link: CVE-2024-45097

cve-icon Vulnrichment

Updated: 2024-09-05T15:46:17.423Z

cve-icon NVD

Status : Analyzed

Published: 2024-09-05T16:15:08.050

Modified: 2024-09-06T12:51:59.750

Link: CVE-2024-45097

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.