Description
IBM Aspera Faspex 5.0.0 through 5.0.9 could allow a user to bypass intended access restrictions and conduct resource modification.
Problem types
CWE-650 Trusting HTTP Permission Methods on the Server Side
Product status
5.0.0 (semver)
Credits
Jan van der Put, Jasper Westerman, Yanick de Pater of REQON B.V. 
References
www.ibm.com/support/pages/node/7167255