Metrics
Affected Vendors & Products
No advisories yet.
Solution
IBM strongly recommends addressing the vulnerabilities now by upgrading to Faspex 5.0.14 available from the link below. Product Fixing VRM Platform Link to Fix IBM Aspera Faspex 5.0.14.2 Linux click here
Workaround
No workaround given by the vendor.
| Link | Providers |
|---|---|
| https://www.ibm.com/support/pages/node/7255331 |
|
Mon, 29 Dec 2025 17:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ibm aspera Faspex
|
|
| CPEs | cpe:2.3:a:ibm:aspera_faspex:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Ibm aspera Faspex
|
Fri, 26 Dec 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 26 Dec 2025 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | IBM Aspera Faspex 5 5.0.0 through 5.0.14.1 is vulnerable to HTML injection. A remote attacker could inject malicious HTML code, which when viewed, would be executed in the victim's Web browser within the security context of the hosting site. | |
| Title | XSS in IBM Aspera Faspex | |
| First Time appeared |
Ibm
Ibm aspera Faspex 5 |
|
| Weaknesses | CWE-80 | |
| CPEs | cpe:2.3:a:ibm:aspera_faspex_5:5.0.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:aspera_faspex_5:5.0.14.1:*:*:*:*:*:*:* |
|
| Vendors & Products |
Ibm
Ibm aspera Faspex 5 |
|
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: ibm
Published:
Updated: 2025-12-26T15:14:53.108Z
Reserved: 2025-04-15T21:16:42.824Z
Link: CVE-2025-36230
Updated: 2025-12-26T15:14:03.644Z
Status : Analyzed
Published: 2025-12-26T15:15:46.830
Modified: 2025-12-29T17:42:46.707
Link: CVE-2025-36230
No data.
OpenCVE Enrichment
No data.