Vulnerability intelligence
CVE-2026-8175
IBM Aspera High-Speed Transfer Endpoint 3.7.4 through 4.4.7 Fix Pack 1 and IBM Aspera High-Speed Transfer Server 3.7.4 through 4.4.7 Fix Pack 1 and IBM Aspera High-Speed Transfer Endpoint are affected by a buffer overflow in the asperahttpd component. This vulnerability could be exploited to cause a denial of service and potentially lead to authentication bypass or remote code execution.
CVSS Score
9.8
Critical
EPSS — Exploit Probability
0.6%
Riskier than 44% of all CVEs
Exploitation
Not in CISA KEV
No federal exploitation record
Remediation
Patch available
Vendor fix published
1 article across 1 outlet · first covered Jun 1, 2026 · latest Jun 1, 2026
Coverage timeline
-
IBM patches critical Aspera flaws including severe CVEssecurityonline.info · Jun 1, 2026