Vulnerability index

Browse CVEs

15 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Core Flight System CRITICAL 9.8
CVE-2025-25373

The Memory Management Module of NASA cFS (Core Flight System) Aquila has insecure permissions, which can be exploited to gain an RCE on the platform.

No fix yet
Fix from $2,300 2025-03-25
Core Flight System HIGH 7.5
CVE-2025-25372

NASA cFS (Core Flight System) Aquila is vulnerable to segmentation fault via sending a malicious telecommand to the Memory Management Module.

No fix yet
Fix from $1,950 2025-03-25
Core Flight System HIGH 7.5
CVE-2025-25374

In NASA cFS (Core Flight System) Aquila, it is possible to put the onboard software in a state that will prevent the launch of any external applicati…

No fix yet
Fix from $1,950 2025-03-25
Fprime CRITICAL 9.8
CVE-2024-55028

A template injection vulnerability in the Dashboard of NASA Fprime v3.4.3 allows attackers to execute arbitrary code via uploading a crafted Vue file.

No fix yet
Fix from $2,300 2025-03-25
Fprime CRITICAL 9.8
CVE-2024-55030

A command injection vulnerability in the Command Dispatcher Service of NASA Fprime v3.4.3 allows attackers to execute arbitrary commands.

No fix yet
Fix from $2,300 2025-03-25
Core Flight System HIGH 7.5
CVE-2025-25371

NASA cFS (Core Flight System) Aquila is vulnerable to path traversal in the OSAL module, allowing the override of any arbitrary file on the system.

No fix yet
Fix from $1,950 2025-03-25
Fprime MEDIUM 6.1
CVE-2024-55029

NASA Fprime v3.4.3 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities.

No fix yet
Fix from $1,600 2025-03-25
Cryptolib CRITICAL 9.8
CVE-2025-29911

CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol - Extended Procedures (SDLS-EP) to secure communication…

No fix yet
Fix from $2,300 2025-03-17
Cryptolib HIGH 7.5
CVE-2025-29910

CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol - Extended Procedures (SDLS-EP) to secure communication…

No fix yet
Fix from $1,950 2025-03-17
Cryptolib HIGH 7.5
CVE-2024-44912

NASA CryptoLib v1.3.0 was discovered to contain an Out-of-Bounds read via the TM subsystem (crypto_tm.c).

Mitigation only
Fix from $1,950 2024-09-27
Cryptolib HIGH 7.5
CVE-2024-44910

NASA CryptoLib v1.3.0 was discovered to contain an Out-of-Bounds read via the AOS subsystem (crypto_aos.c).

No fix yet
Fix from $1,950 2024-09-27
Cryptolib HIGH 7.5
CVE-2024-44911

NASA CryptoLib v1.3.0 was discovered to contain an Out-of-Bounds read via the TC subsystem (crypto_tc.c).

Mitigation only
Fix from $1,950 2024-09-27
Cfitsio HIGH 8.8
CVE-2018-3847

Multiple exploitable buffer overflow vulnerabilities exist in image parsing functionality of the CFITSIO library version 3.42. Specially crafted imag…

No fix yet
Fix from $1,950 2018-08-01
Kodiak HIGH 8.8
CVE-2018-1000047

NASA Kodiak version v1.0 contains a CWE-502 vulnerability in Kodiak library's data processing function that can result in remote code execution. This…

Mitigation only
Fix from $1,950 2018-02-09
Rtretrievalframework HIGH 8.8
CVE-2018-1000048

NASA RtRetrievalFramework version v1.0 contains a CWE-502 vulnerability in Data retrieval functionality of RtRetrieval framework that can result in r…

Mitigation only
Fix from $1,950 2018-02-09