CVE-2025-33136HIGH 8.8EPSS p20.2%
CVE-2025-33136CVE-2025-33136
Description
IBM Aspera Faspex 5.0.0 through 5.0.12 could allow an authenticated user to obtain sensitive information or perform unauthorized actions on behalf of another user due to improper protection of assumed immutable data.
Scoring
| CVSS 3.1 | 8.8 (HIGH) |
| Vector | CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
| EPSS | 0.29% probability of exploitation · percentile 20.2% · 2026-06-19T12:03:05Z |
| Published | 2025-05-22 |
| Last modified | 2025-05-30 |
Underlying weaknesses· 1
References
1
| Type | Target | Confidence | Tier |
|---|---|---|---|
| Weakness | Modification of Assumed-Immutable Data (MAID)cwe-471 | 0% | live |
Related by meaning· 6
Nearest entities by semantic similarity across the cs-graph corpus.