Skip to main content

IBM security briefs

2 published alerts for IBM products and services.

Actively exploited (KEV)Ransomware

CVE-2022-47986

IBM Aspera Faspex Code Execution Vulnerability

IBM Aspera Faspex is listed in CISA's Known Exploited Vulnerabilities catalog (CVE-2022-47986). IBM Aspera Faspex could allow a remote attacker to execute code on the system, caused by a YAML deserialization flaw. CISA remediation due date: 2023-03-14. If you need help checking exposure, call (864) 335-9223.

Actively exploited (KEV)Ransomware

CVE-2013-3993

IBM InfoSphere BigInsights Invalid Input Vulnerability

IBM InfoSphere BigInsights is listed in CISA's Known Exploited Vulnerabilities catalog (CVE-2013-3993). Certain APIs within BigInsights can take invalid input that might allow attackers unauthorized access to read, write, modify, or delete data. CISA remediation due date: 2022-06-15. If you need help checking exposure, call (864) 335-9223.