IBM Aspera Faspex是美国国际商业机器(IBM)公司的一种用于快速的全球个人对个人文件交付和协作的解决方案。 IBM Aspera Faspex 5 5.0.0版本至5.0.14.3版本存在跨站脚本漏洞,该漏洞源于允许经过身份验证的用户在Web UI中嵌入任意JavaScript代码,可能导致凭据泄露。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| IBM | Aspera Faspex 5 | 5.0.0 ~ 5.0.14.3 |
cpe:2.3:a:ibm:aspera_faspex_5:5.0.0:*:*:*:*:*:*:*
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-2713 | 7.4 HIGH | IBM Trusteer Rapport installer affected by uncontrolled search path element vulnerability |
| CVE-2025-36173 | 6.1 MEDIUM | InfoSphere Data Architect (IDA) 9.2.1 Vulnerability Fixes. |
| CVE-2025-13219 | 5.9 MEDIUM | Multiple vulnerabilities in IBM Aspera Orchestrator |
| CVE-2025-13213 | 5.4 MEDIUM | Multiple vulnerabilities in IBM Aspera Orchestrator |
| CVE-2025-36227 | 5.4 MEDIUM | Multiple vulnerabilities in IBM Aspera Faspex |
| CVE-2025-36105 | 4.4 MEDIUM | IBM Planning Analytics Advanced Certified Containers is vulnerable to a sensitive informat |
No comments yet