216.73.216.233

CVE-2026-8175

· Published 27/05/2026 14:17 · Modified 27/05/2026 14:53

Labels: CVE-2026-8175 2026-05-27CVE-2026-8175CWE-122[email protected]

Essential information

Published
27/05/2026 14:17
Modified
27/05/2026 14:53
Author
Creator
CVSS
9.8 CRITICAL (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CVSS metrics

Description

IBM Aspera High-Speed Transfer Endpoint 3.7.4 through 4.4.7 Fix Pack 1 and IBM Aspera High-Speed Transfer Server 3.7.4 through 4.4.7 Fix Pack 1 and IBM Aspera High-Speed Transfer Endpoint are affected by a buffer overflow in the asperahttpd component. This vulnerability could be exploited to cause a denial of service and potentially lead to authentication bypass or remote code execution.

NVD status

Status
Undergoing Analysis — CVE is currently being analyzed by NVD staff, this process results in association of reference link tags, CVSS scores, CWE association, and CPE applicability statements.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
ibm / aspera high-speed transfer endpoint cpe:2.3:a:ibm:aspera_high-speed_transfer_endpoint:3.7.4-4.4.7:*:*:*:*:*:*:*
ibm / aspera high-speed transfer server cpe:2.3:a:ibm:aspera_high-speed_transfer_server:3.7.4-4.4.7:*:*:*:*:*:*:*

References