CVE-2026-14996: Multiple vulnerabilities in IBM Aspera Faspex
IBM Aspera Faspex 5 5.0.0 through 5.0.15.4 has addressed a vulnerability related to session management.
Other sources
IBM Aspera Faspex 5 has addressed a vulnerability related to session management.
— IBM
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
IBM Aspera Faspex 5to a version that resolves this vulnerability.Fixed in 5.0.16
Event History
Frequently Asked Questions
What is the severity of CVE-2026-14996?
The severity of CVE-2026-14996 is rated as high with a score of 8.2.
What vulnerabilities are addressed in CVE-2026-14996?
CVE-2026-14996 addresses vulnerabilities related to session management in IBM Aspera Faspex versions 5.0.0 through 5.0.15.4.
How do I fix CVE-2026-14996?
To fix CVE-2026-14996, update your IBM Aspera Faspex software to the latest version that addresses the session management vulnerabilities.
What versions of IBM Aspera Faspex are affected by CVE-2026-14996?
IBM Aspera Faspex versions 5.0.0 through 5.0.15.4 are affected by CVE-2026-14996.
Is user interaction required to exploit CVE-2026-14996?
No, user interaction is not required to exploit CVE-2026-14996 as indicated by the vulnerability metrics.