Vulnerability Monitor

The vendors, products, and vulnerabilities you care about
aspera_faspex Vendor: ibm

About This Product

aspera_faspex is a software product offered by ibm. This product is widely deployed in production environments, making vulnerability monitoring essential for organizations relying on it. Security vulnerabilities in products of this category can affect system availability, data confidentiality, and integrity across entire networks. The moderate vulnerability count reflects ongoing security research and responsible disclosure practices. Regular assessment of known vulnerabilities and timely patching are fundamental components of responsible system administration for any deployment of this software.

Vulnerability Landscape Summary

SecUtils has identified 44 known vulnerabilities affecting ibm aspera_faspex. This includes 2 critical-severity issues and 7 high-severity issues that warrant immediate attention. Vulnerabilities in this product have been disclosed spanning from 2022 to 2025, indicating a recent active security attention. 30 medium-severity issues and 5 low-severity issues complete the vulnerability landscape. Organizations should prioritize patching based on deployment context, asset criticality, and exploitation likelihood rather than severity alone.

Known Vulnerabilities
ID Date Published Last Modified Severity (CVSSv3) Severity (CVSSv2) Exploit Available
CVE-2022-22497 2022-05-24 2024-11-21 7.5 5.0 Likely
CVE-2022-47986 2023-02-17 2025-10-27 9.8 - -
CVE-2023-22868 2023-02-17 2024-11-21 5.4 - -
CVE-2023-27875 2023-03-16 2025-02-26 7.5 - -
CVE-2023-27871 2023-03-21 2025-02-25 7.5 - -
CVE-2023-27873 2023-03-21 2024-11-21 6.5 - -
CVE-2023-27874 2023-03-21 2024-11-21 9.9 - -
CVE-2023-22870 2023-09-05 2024-11-21 5.9 - -
CVE-2023-35906 2023-09-05 2024-11-21 5.3 - -
CVE-2022-22405 2023-09-08 2024-11-21 5.9 - -
CVE-2023-24965 2023-09-08 2024-11-21 5.8 - -
CVE-2023-30995 2023-09-08 2024-11-21 7.5 - -
CVE-2022-22401 2023-09-08 2024-11-21 5.9 - -
CVE-2022-22402 2023-09-08 2024-11-21 5.4 - -
CVE-2022-22409 2023-09-08 2024-11-21 5.3 - -
CVE-2022-40744 2024-02-02 2024-11-21 4.8 - -
CVE-2022-22399 2024-03-05 2025-01-14 5.4 - -
CVE-2023-37400 2024-04-19 2024-12-19 7.8 - -
CVE-2023-22869 2024-04-19 2024-12-19 5.5 - -
CVE-2023-37396 2024-04-19 2024-12-19 2.5 - -
CVE-2022-40745 2024-04-19 2024-11-21 5.5 - -
CVE-2023-27279 2024-04-19 2024-11-21 6.5 - -
CVE-2023-37397 2024-04-19 2024-11-21 3.6 - -
CVE-2023-37411 2024-05-28 2025-01-14 4.8 - -
CVE-2024-45096 2024-09-05 2024-09-06 6.5 - -
CVE-2024-45097 2024-09-05 2024-09-06 5.9 - -
CVE-2024-45098 2024-09-05 2024-09-06 6.8 - -
CVE-2023-37395 2024-12-11 2025-01-07 2.5 - -
CVE-2023-35907 2025-01-29 2025-03-05 5.9 - -
CVE-2023-37398 2025-01-29 2025-03-05 5.9 - -
CVE-2023-37412 2025-01-29 2025-03-04 4.4 - -
CVE-2023-37413 2025-01-29 2025-03-04 5.3 - -
CVE-2025-3423 2025-04-13 2025-07-18 5.4 - -
CVE-2025-33136 2025-05-22 2025-05-30 7.1 - -
CVE-2025-33137 2025-05-22 2025-05-30 7.1 - -
CVE-2025-33138 2025-05-22 2025-05-30 5.4 - -
CVE-2025-36039 2025-07-31 2025-08-06 6.5 - -
CVE-2025-36040 2025-07-31 2025-08-06 6.5 - -
CVE-2023-37401 2025-10-09 2025-10-14 5.3 - -
CVE-2025-36171 2025-10-09 2025-10-14 4.9 - -
CVE-2025-36225 2025-10-09 2025-10-14 4.3 - -
CVE-2025-36228 2025-12-26 2025-12-29 3.8 - -
CVE-2025-36229 2025-12-26 2025-12-29 3.1 - -
CVE-2025-36230 2025-12-26 2025-12-29 5.4 - -

How SecUtils Interprets Product Data

SecUtils normalizes and enriches National Vulnerability Database (NVD) records for ibm aspera_faspex by standardizing vendor and product identifiers, aggregating vulnerability metadata from both NVD and MITRE sources, and structuring the data for rapid analysis and asset correlation. For every vulnerability listed, we extract Common Platform Enumeration (CPE) data, Common Weakness Enumeration (CWE) classifications, CVSS severity metrics, and reference information to enable organizations to prioritize patching and risk assessment efficiently. This record contains no exploit code, proof-of-concept instructions, or attack methodologies—only defensive intelligence necessary for vulnerability management and security operations.