CVE-2025-13925: Multiple vulnerabilities in IBM Aspera Console
IBM Aspera Console 3.4.7 stores potentially sensitive information in log files that could be read by a local privileged user.
Other sources
IBM Aspera Console stores potentially sensitive information in log files that could be read by a local privileged user.
— IBM
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-13925?
CVE-2025-13925 is considered a medium severity vulnerability due to the exposure of sensitive information in log files.
How do I fix CVE-2025-13925?
To fix CVE-2025-13925, ensure that log files containing sensitive information are properly restricted and inaccessible to unauthorized users.
What type of information is exposed by CVE-2025-13925?
CVE-2025-13925 exposes potentially sensitive information stored in log files of IBM Aspera Console.
Who is affected by CVE-2025-13925?
Users of IBM Aspera Console version 3.4.7 are affected by CVE-2025-13925.
Can CVE-2025-13925 be exploited remotely?
No, CVE-2025-13925 requires local access for exploitation as it involves log files read by a local privileged user.