534
VMScore

CVE-2020-4434

Published: 10/06/2020 Updated: 15/06/2020
CVSS v2 Base Score: 6 | Impact Score: 6.4 | Exploitability Score: 6.8
CVSS v3 Base Score: 7.5 | Impact Score: 5.9 | Exploitability Score: 1.6
VMScore: 534
Vector: AV:N/AC:M/Au:S/C:P/I:P/A:P

Vulnerability Summary

Certain IBM Aspera applications are vulnerable to buffer overflow based on the product configuration and valid authentication, which could allow an attacker with intimate knowledge of the system to execute arbitrary code or perform a denial-of-service (DoS) through the http fallback service. IBM X-Force ID: 180900.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

ibm aspera application platform on demand

ibm aspera faspex on demand

ibm aspera high-speed transfer endpoint

ibm aspera high-speed transfer server

ibm aspera high-speed transfer server for cloud pak for integration

ibm aspera proxy server

ibm aspera server on demand

ibm aspera shares on demand

ibm aspera streaming

ibm aspera transfer cluster manager