← Back

CVE-2025-36225

nvd nist
Published: Oct 9, 2025Modified: Jun 17, 2026

JSON object

Loading...
4.3
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Exploitability: 2.8 / Impact: 1.4
Source: psirt@us.ibm.com (Secondary)

Description

IBM Aspera 5.0.0 through 5.0.13.1 could disclose sensitive user information from the system to an authenticated user due to an observable discrepancy of returned data.

Affected (1)

Products: Ibm: Aspera Faspex
1 product
Aspera Faspex
Configuration A
1 vulnerable · 2 platform
Vulnerable SoftwareAffected Versions
From 5.0.0 to 5.0.14
Running on/withPlatform Versions
Linux
Linux Kernel
All versions
Microsoft
Windows
All versions

References (1)

Source: psirt@us.ibm.com
Vendor Advisory

Timeline

No history available yet.