CVE-2025-13925Log File Information Exposure in IBM Aspera Console

Severity
4.9MEDIUMNVD
EPSS
0.0%
top 87.92%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJan 20

Description

IBM Aspera Console 3.4.7 stores potentially sensitive information in log files that could be read by a local privileged user.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:NExploitability: 1.2 | Impact: 3.6

Affected Packages2 packages

CVEListV5ibm/aspera_console3.4.7

🔴Vulnerability Details

2
CVEList
Multiple vulnerabilities in IBM Aspera Console2026-01-20
GHSA
GHSA-6hm8-g2pm-5vgv: IBM Aspera Console 32026-01-20
CVE-2025-13925 — Log File Information Exposure in IBM | cvebase