CyberRota Analysis
AI-GeneratedIBM Aspera Desktop App versions 1.0.5 through 1.0.19 are vulnerable to a critical issue that permits unauthorized file writing outside the designated download directory. This flaw could lead to data leakage or overwriting of sensitive files, posing significant risks to user data integrity. Organizations utilizing affected versions of the Aspera Desktop App should prioritize immediate remediation to mitigate potential exploitation.
CVE
CVE-2026-14973
Severity
CRITICAL
CVSS
9.3
EPSS
0.30%
Original NVD Description
IBM Aspera Desktop App 1.0.5 through 1.0.19 IBM Aspera for desktop can allow files to be written outside of the user's selected download destination.
Related CVEs
Other vulnerabilities affecting the same vendor(s)