CVE-2023-27272: IBM Aspera Console

High severity, CVSS 8.8. EPSS: 0.3% chance of exploitation in the next 30 days.

IBM Aspera Console 3.4.0 through 3.4.4 allows passwords to be reused when a new user logs into the system.

Affected products

  • IBM Aspera Console: from 3.4.0, before 3.4.5 (fixed in 3.4.5)

Published 2025-04-14. Last modified 2026-06-17.