8.6
/ 10
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:L
Description
IBM Aspera Console 3.4.0 through 3.4.8 is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could allow the attacker to view, add, modify, or delete information in the back-end database.
AI Analysis
SQL injection vulnerability allowing remote attackers to view, add, modify, or delete database information
Basic Information
ID
CVE-2025-13379
Source
ibm
Published
Feb 5, 2026 at 13:30
Affected Product
Vendor
IBM
Product
Aspera Console
Version
3.4.0
Affected Versions
IBM Aspera Console 3.4.0
CWE Classification
AI Assessment
AI Score
8.6 / 10
AI Severity
High
Vendor
IBM
Product
Aspera Console
Version
3.4.0-3.4.8