IBM Aspera Faspex 5.0.0 through 5.0.12 could allow an authenticated user to obtain sensitive information or perform unauthorized actions on behalf of another user due to client-side enforcement of server-side security.
Solution:
The product is composed of a server that relies on the client to implement a mechanism that is intended to protect the server.
Link | Tags |
---|---|
https://www.ibm.com/support/pages/node/7234114 | vendor advisory |