Vulnerabilities > IBM > Aspera Faspex > Critical

DATE CVE VULNERABILITY TITLE RISK
2023-02-17 CVE-2022-47986 Deserialization of Untrusted Data vulnerability in IBM Aspera Faspex 4.4.1/4.4.2
IBM Aspera Faspex 4.4.2 Patch Level 1 and earlier could allow a remote attacker to execute arbitrary code on the system, caused by a YAML deserialization flaw.
network
low complexity
ibm CWE-502
critical
9.8