Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2023-76771
HistoryApr 06, 2023 - 12:00 a.m.

IBM Aspera Cargo and IBM Aspera Connect Code Execution Vulnerability (CNVD-2023-76771)

2023-04-0600:00:00
China National Vulnerability Database
www.cnvd.org.cn
5
ibm aspera
file transfer
streaming
fasp protocol
vulnerability
buffer overflow
code execution
boundary check

AI Score

8.3

Confidence

High

EPSS

0.002

Percentile

64.9%

IBM Aspera is a set of fast file transfer and streaming solutions built on the IBM FASP protocol from International Business Machines (IBM). A code execution vulnerability exists in IBM Aspera Cargo and IBM Aspera Connect that originates from a boundary check error and can be exploited by an attacker to cause a buffer overflow and execute arbitrary code on the system.

AI Score

8.3

Confidence

High

EPSS

0.002

Percentile

64.9%

Related for CNVD-2023-76771