Unrated severityNVD Advisory· Published Mar 7, 2025· Updated Sep 1, 2025
IBM Aspera Shares XML external entity injection
CVE-2025-0162
Description
IBM Aspera Shares 1.9.9 through 1.10.0 PL7 is vulnerable to an XML external entity injection (XXE) attack when processing XML data. A remote authenticated attacker could exploit this vulnerability to expose sensitive information or consume memory resources.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- www.ibm.com/support/pages/node/7185096mitrevendor-advisorypatch
News mentions
0No linked articles in our index yet.