IBM-6221324: Ibm aspera high-speed transfer server vulnerability

Published Jun 8, 2020
·
Updated

Affected Software

10 affected components
IBM Aspera High-Speed Transfer Server<=3.9.3 and earlier
IBM Aspera High-Speed Transfer Endpoint<=3.9.3 and earlier
IBM Aspera Proxy Server<=1.4.3 and earlier
IBM Aspera Transfer Cluster Manager<=1.3.1 with Aspera High-Speed Transfer Server 3.9.3 and earlier
IBM Aspera Application Platform On Demand<=3.7.4 and earlier
IBM Aspera Faspex On Demand<=3.7.4 and earlier
IBM Aspera Server On Demand<=3.7.4 and earlier
IBM Aspera Shares On Demand<=3.7.4 and earlier
IBM Aspera Streaming<=3.9.3 and earlier
IBM Aspera High-Speed Transfer Server for Cloud Pak for Integration (CP4I)<=3.9.10 and earlier

Event History

Jun 8, 2020
Advisory Published
12:00 AM

Child vulnerabilities

Contains the following vulnerabilities.

Frequently Asked Questions

1

What is the severity of IBM-6221324?

The severity of IBM-6221324 is categorized as critical due to its potential to allow unauthorized access to sensitive data.

2

How do I fix IBM-6221324?

To mitigate the impact of IBM-6221324, users should upgrade to the latest patched version of the affected IBM Aspera software products.

3

What products are affected by IBM-6221324?

IBM-6221324 affects several IBM Aspera products including High-Speed Transfer Server, Endpoint, Proxy Server, and others.

4

What are the potential risks associated with IBM-6221324?

The risks of IBM-6221324 include unauthorized data access and possible data breaches, exposing sensitive information.

5

Is there a workaround for IBM-6221324 while waiting for a fix?

While a full patch is recommended, applying strict access controls and monitoring can serve as temporary mitigations for IBM-6221324.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203