CVE-2025-13212 PUBLISHED

IBM Aspera Console Denial of Service

Assigner: ibm
Reserved: 14.11.2025 Published: 13.03.2026 Updated: 13.03.2026

IBM Aspera Console 3.3.0 through 3.4.8 could allow an authenticated user to cause a denial of service in the email service due to improper control of interaction frequency.

Metrics

CVSS Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
CVSS Score: 5.3

Product Status

Vendor IBM
Product Aspera Console
Versions
  • affected from 3.3.0 to 3.4.8 (incl.)

Solutions

Remediation/Fixes It is strongly recommended that customers upgrade to the latest version of IBM Aspera Console: Product(s) Fixing VRM Platform Link to Fix IBM Aspera Console 3.4.9 Windows Link IBM Aspera Console 3.4.9 Linux Link

References

Problem Types

  • CWE-799 Improper Control of Interaction Frequency CWE