Review reviewHigh
CVE-2026-11980
IBM Aspera Desktop App
IBM Aspera Desktop App 1.0.5 through 1.0.19 can allow arbitrary code execution by loading DLL files at start-up.
- CVSS
- 7.3
- EPSS
- - - percentile
- CISA KEV
- Not listed
- Published
- 2026.07.31
IBM Aspera Desktop App 1.0.5 through 1.0.19 can allow arbitrary code execution by loading DLL files at start-up.
The CVSS severity warrants an early asset and exposure review.
IBM Aspera Desktop App 1.0.5 through 1.0.19 can allow arbitrary code execution by loading DLL files at start-up.
Confirm exposure before applying a vendor-supported change.
Confirm that IBM Aspera Desktop App and an affected version are present.
Combine exploitation signals with asset exposure and business criticality.
Follow the vendor advisory or supported update path and preserve rollback options.
Recheck the version, service health, access paths, and relevant logs.