CVE-2025-13460
IBM Aspera Console 3.3.0 through 3.4.8 could allow an attacker to enumerate usernames due to an observable response disc
IBM Aspera Console 3.3.0 through 3.4.8 could allow an attacker to enumerate usernames due to an observable response discrepancy.
MEDIUM · CVSS 5.3
EPSS 0.00039
Schedule remediation
- SSVC automatable: yes - attacks can be scripted at scale
Sigma rules7
YARA rules0