7.3

CVE-2026-11980

Code execution in IBM Desktop App

IBM Aspera Desktop App 1.0.5 through 1.0.19 can allow arbitrary code execution by loading DLL files at start-up.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
IbmAspera SwEditiondesktop Version >= 1.0.5 <= 1.0.19
   ApplemacOS Version-
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.17% 0.067
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
IBM 7.3 1.3 5.9
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
CWE-242 Use of Inherently Dangerous Function

The product calls a function that can never be guaranteed to work safely.

https://www.ibm.com/support/pages/node/7280939
Vendor Advisory