IBM-6221324: Ibm aspera high-speed transfer server vulnerability
Published Jun 8, 2020
·Updated
Affected Software
10 affected components
IBM Aspera High-Speed Transfer Server<=3.9.3 and earlier
IBM Aspera High-Speed Transfer Endpoint<=3.9.3 and earlier
IBM Aspera Proxy Server<=1.4.3 and earlier
IBM Aspera Transfer Cluster Manager<=1.3.1 with Aspera High-Speed Transfer Server 3.9.3 and earlier
IBM Aspera Application Platform On Demand<=3.7.4 and earlier
IBM Aspera Faspex On Demand<=3.7.4 and earlier
IBM Aspera Server On Demand<=3.7.4 and earlier
IBM Aspera Shares On Demand<=3.7.4 and earlier
IBM Aspera Streaming<=3.9.3 and earlier
IBM Aspera High-Speed Transfer Server for Cloud Pak for Integration (CP4I)<=3.9.10 and earlier
Event History
Jun 8, 2020
Advisory Published
12:00 AM
Child vulnerabilities
Contains the following vulnerabilities.
Frequently Asked Questions
1
What is the severity of IBM-6221324?
The severity of IBM-6221324 is categorized as critical due to its potential to allow unauthorized access to sensitive data.
2
How do I fix IBM-6221324?
To mitigate the impact of IBM-6221324, users should upgrade to the latest patched version of the affected IBM Aspera software products.
3
What products are affected by IBM-6221324?
IBM-6221324 affects several IBM Aspera products including High-Speed Transfer Server, Endpoint, Proxy Server, and others.
4
What are the potential risks associated with IBM-6221324?
The risks of IBM-6221324 include unauthorized data access and possible data breaches, exposing sensitive information.
5
Is there a workaround for IBM-6221324 while waiting for a fix?
While a full patch is recommended, applying strict access controls and monitoring can serve as temporary mitigations for IBM-6221324.