Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-7876

Опубликовано: 27 мая 2026
Источник: nvd
CVSS3: 9.1
EPSS Низкий

Описание

IBM Aspera HSTS for CP4I 1.5.1 through 1.5.19 is affected by an authentication bypass vulnerability. A transfer client may be able to take advantage of this vulnerability to access files in the server's local storage that they should not have access to, when specific restriction settings are not in place.

Ссылки

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:ibm:aspera_high-speed_transfer_server_for_cloud_pak_for_integration:*:*:*:*:*:*:*:*
Версия от 1.5.1 (включая) до 1.5.20 (исключая)

EPSS

Процентиль: 24%
0.00312
Низкий

9.1 Critical

CVSS3

Дефекты

CWE-287
NVD-CWE-noinfo

Связанные уязвимости

CVSS3: 9.1
github
2 месяца назад

IBM Aspera HSTS for CP4I 1.5.1 through 1.5.19

EPSS

Процентиль: 24%
0.00312
Низкий

9.1 Critical

CVSS3

Дефекты

CWE-287
NVD-CWE-noinfo