Fiche vulnérabilité
CVE-2025-66487 : faille moyenne ibm aspera shares (CVSS 6.5)
Description
IBM Aspera Shares 1.9.9 through 1.11.0 does not properly rate limit the frequency that an authenticated user can send emails, which could result in email flooding or a denial of service.
En bref
- Sévérité
- Moyenne (CVSS 6.5)
- Vecteur CVSS
- CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
- Exploitation active
- Non signalée par la CISA
- Publication
- 1 avr. 2026
- Dernière mise à jour
- 17 juin 2026
Produits concernés
- ibm aspera shares