← Browse

CVE-2026-14973

Medium

Elevated severity or exploit probability.

CVSS base
9.3 CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:N
EPSS — probability of exploitation (30 days)
0.3%
23.3th percentile
CISA KEV
Not listed
Weakness / dates
CWE-22
Published 2026-07-28 · modified 2026-08-13

CVSS breakdown

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:N

Attack VectorNNetwork
Attack ComplexityLLow
Privileges RequiredNNone
User InteractionRRequired
ScopeCChanged
ConfidentialityHHigh
IntegrityHHigh
AvailabilityNNone

Timeline

Description

IBM Aspera Desktop App 1.0.5 through 1.0.19 IBM Aspera for desktop can allow files to be written outside of the user's selected download destination.

Affected

apple ibm linux microsoft

References

Official: NVD · CVE.org