SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-14973

CRITICAL · CVSS 9.3 EPSS 0.30%

Source: NVD + CISA KEV + EPSS · Published 2026-07-28 · Last synced 2026-08-27

CyberRota Analysis

AI-Generated

IBM Aspera Desktop App versions 1.0.5 through 1.0.19 are vulnerable to a critical issue that permits unauthorized file writing outside the designated download directory. This flaw could lead to data leakage or overwriting of sensitive files, posing significant risks to user data integrity. Organizations utilizing affected versions of the Aspera Desktop App should prioritize immediate remediation to mitigate potential exploitation.

CVE
CVE-2026-14973
Severity
CRITICAL
CVSS
9.3
EPSS
0.30%

Original NVD Description

IBM Aspera Desktop App 1.0.5 through 1.0.19 IBM Aspera for desktop can allow files to be written outside of the user's selected download destination.

Related CVEs

Other vulnerabilities affecting the same vendor(s)