VYPR

Aspera Cargo

by IBM

CVEs (4)

  • CVE-2023-27285HigJun 5, 2023
    risk 0.55cvss 8.4epss 0.00

    IBM Aspera Connect 4.2.5 and IBM Aspera Cargo 4.2.5 is vulnerable to a buffer overflow, caused by improper bounds checking. An attacker could overflow a buffer and execute arbitrary code on the system. IBM X-Force ID: 248625.

  • CVE-2023-27286HigApr 2, 2023
    risk 0.55cvss 8.4epss 0.01

    IBM Aspera Cargo 4.2.5 and IBM Aspera Connect 4.2.5 are vulnerable to a buffer overflow, caused by improper bounds checking. An attacker could overflow a buffer and execute arbitrary code on the system. IBM X-Force ID: 248616.

  • CVE-2023-27284HigApr 2, 2023
    risk 0.55cvss 8.4epss 0.01

    IBM Aspera Cargo 4.2.5 and IBM Aspera Connect 4.2.5 are vulnerable to a buffer overflow, caused by improper bounds checking. An attacker could overflow a buffer and execute arbitrary code on the system. IBM X-Force ID: 248616.

  • CVE-2023-22862MedJun 5, 2023
    risk 0.38cvss 5.9epss 0.01

    IBM Aspera Connect 4.2.5 and IBM Aspera Cargo 4.2.5 transmits authentication credentials, but it uses an insecure method that is susceptible to unauthorized interception and/or retrieval.