CVE-2025-13459 PUBLISHED

IBM Aspera Console Denial of Service

Assigner: ibm
Reserved: 19.11.2025 Published: 13.03.2026 Updated: 13.03.2026

IBM Aspera Console 3.3.0 through 3.4.8 could allow a privileged user to cause a denial of service due to improper enforcement of behavioral workflow.

Metrics

CVSS Vector: CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:L
CVSS Score: 2.7

Product Status

Vendor IBM
Product Aspera Console
Versions
  • affected from 3.3.0 to 3.4.8 (incl.)

Solutions

Remediation/Fixes It is strongly recommended that customers upgrade to the latest version of IBM Aspera Console: Product(s) Fixing VRM Platform Link to Fix IBM Aspera Console 3.4.9 Windows Link IBM Aspera Console 3.4.9 Linux Link

References

Problem Types

  • CWE-841 Improper Enforcement of Behavioral Workflow CWE