Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-41299 | IBM Aspera Faspex 5.0.0 through 5.0.10 does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts. |
| Link | Providers |
|---|---|
| https://www.ibm.com/support/pages/node/7181814 |
|
Wed, 12 Feb 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 29 Jan 2025 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | IBM Aspera Faspex 5.0.0 through 5.0.10 does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts. | |
| Title | IBM Aspera Faspex information disclosure | |
| First Time appeared |
Ibm
Ibm aspera Faspex |
|
| Weaknesses | CWE-521 | |
| CPEs | cpe:2.3:a:ibm:aspera_faspex:5.0.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:aspera_faspex:5.0.10:*:*:*:*:*:*:* |
|
| Vendors & Products |
Ibm
Ibm aspera Faspex |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: ibm
Published:
Updated: 2025-02-12T16:47:19.522Z
Reserved: 2023-07-05T15:59:03.335Z
Link: CVE-2023-37398
Updated: 2025-02-12T16:47:15.815Z
Status : Received
Published: 2025-01-29T17:15:26.513
Modified: 2025-01-29T17:15:26.513
Link: CVE-2023-37398
No data.
OpenCVE Enrichment
No data.
EUVD