İçeriğe atla
Noroxi

nasa kayıtları

nasa üreticisine ait 62 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
17
Düzeltme kaydı olan
%40,3
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

62 kayıt
  • CVE-2019-1010060
    41Planlayın

    NASA CFITSIO prior to 3.43 is affected by: Buffer Overflow.

    KritikCVSS 9,8İstismar yokEPSS %7

    nasa · cfitsio16 Tem 2019

  • CVE-2024-55030
    40Planlayın

    A command injection vulnerability in the Command Dispatcher Service of NASA Fprime v3.4.3 allows attackers to execute arbitrary commands.

    KritikCVSS 9,8İstismar yokEPSS %2

    nasa · fprime25 Mar 2025

  • CVE-2024-55028
    39İzleyin

    A template injection vulnerability in the Dashboard of NASA Fprime v3.4.3 allows attackers to execute arbitrary code via uploading a crafted

    KritikCVSS 9,8İstismar yokEPSS %1

    nasa · fprime25 Mar 2025

  • CVE-2026-41144
    39İzleyin

    F´ (F Prime) has Integer Overflow in FileUplink

    KritikCVSS 9,8İstismar yokEPSS %1

    nasa · fprime21 Nis 2026

  • CVE-2024-35056
    39İzleyin

    NASA AIT-Core v2.5.2 was discovered to contain multiple SQL injection vulnerabilities via the query_packets and insert functions.

    KritikCVSS 9,8İstismar yokEPSS %1

    nasa · ait core21 May 2024

  • CVE-2025-46674
    39İzleyin

    NASA CryptoLib before 1.3.2 uses Extended Procedures that are a Work in Progress (not intended for use during flight), potentially leading t

    KritikCVSS 9,9İstismar yokEPSS %1

    nasa · cryptolib26 Nis 2025

  • CVE-2025-25373
    39İzleyin

    The Memory Management Module of NASA cFS (Core Flight System) Aquila has insecure permissions, which can be exploited to gain an RCE on the

    KritikCVSS 9,8İstismar yokEPSS %1

    nasa · core flight system25 Mar 2025

  • CVE-2025-46673
    39İzleyin

    NASA CryptoLib before 1.3.2 does not check whether the SA is in an operational state before use, possibly leading to a bypass of the Space D

    KritikCVSS 9,9İstismar yokEPSS %0

    nasa · cryptolib26 Nis 2025

  • CVE-2025-30216
    37İzleyin

    CryptoLib Has Heap Overflow in Crypto_TM_ProcessSecurity due to Unchecked Secondary Header Length

    KritikCVSS 9,1Kavram kanıtıEPSS %3

    nasa · cryptolib25 Mar 2025

  • CVE-2026-60113
    37İzleyin

    AIT-DSN < 2.2.2 Missing Authentication via SLE API Routes

    KritikCVSS 9,3İstismar yokEPSS %1

    nasa · ait dsn29 Tem 2026

  • CVE-2026-60112
    37İzleyin

    AIT-GUI < 2.5.1 Missing Authentication via Sessions.create()

    KritikCVSS 9,3İstismar yokEPSS %1

    nasa · ait gui29 Tem 2026

  • CVE-2025-30356
    37İzleyin

    Heap Buffer Overflow via Incomplete Length Check in `Crypto_TC_ApplySecurity`

    KritikCVSS 9,3İstismar yokEPSS %1

    nasa · cryptolib1 Nis 2025

  • CVE-2018-3849
    36İzleyin

    In the ffghtb function in NASA CFITSIO 3.42, specially crafted images parsed via the library can cause a stack-based buffer overflow overwri

    YüksekCVSS 8,8İstismar yokEPSS %4

    nasa · cfitsio16 Nis 2018

  • CVE-2018-3848
    36İzleyin

    In the ffghbn function in NASA CFITSIO 3.42, specially crafted images parsed via the library can cause a stack-based buffer overflow overwri

    YüksekCVSS 8,8İstismar yokEPSS %4

    nasa · cfitsio16 Nis 2018

  • CVE-2018-3846
    36İzleyin

    In the ffgphd and ffgtkn functions in NASA CFITSIO 3.42, specially crafted images parsed via the library can cause a stack-based buffer over

    YüksekCVSS 8,8İstismar yokEPSS %3

    nasa · cfitsio16 Nis 2018

  • CVE-2018-3847
    36İzleyin

    Multiple exploitable buffer overflow vulnerabilities exist in image parsing functionality of the CFITSIO library version 3.42.

    YüksekCVSS 8,8İstismar yokEPSS %3

    nasa · cfitsio1 Ağu 2018

  • NASA Kodiak version v1.0 contains a CWE-502 vulnerability in Kodiak library's data processing function that can result in remote code execut

    YüksekCVSS 8,8İstismar yokEPSS %2

    nasa · kodiak9 Şub 2018

  • NASA RtRetrievalFramework version v1.0 contains a CWE-502 vulnerability in Data retrieval functionality of RtRetrieval framework that can re

    YüksekCVSS 8,8İstismar yokEPSS %2

    nasa · rtretrievalframework9 Şub 2018

  • CVE-2025-29912
    35İzleyin

    CryptoLib Has Heap Buffer Overflow Due to Unsigned Integer Underflow in Crypto_TC_ProcessSecurity

    YüksekCVSS 8,9İstismar yokEPSS %1

    nasa · cryptolib17 Mar 2025

  • CVE-2025-29909
    35İzleyin

    CryptoLib's Crypto_TC_ApplySecurity() Has a Heap Buffer Overflow Vulnerability

    YüksekCVSS 8,9İstismar yokEPSS %1

    nasa · cryptolib17 Mar 2025

  • CVE-2025-29911
    35İzleyin

    CryptoLib Has Heap Buffer Overflow in Crypto_AOS_ProcessSecurity Function

    YüksekCVSS 8,9İstismar yokEPSS %1

    nasa · cryptolib17 Mar 2025

  • CVE-2025-29913
    35İzleyin

    CryptoLib's Crypto_TC_Prep_AAD Has Buffer Overflow Due to Integer Underflow

    YüksekCVSS 8,9İstismar yokEPSS %1

    nasa · cryptolib17 Mar 2025

  • CVE-2025-46672
    35İzleyin

    NASA CryptoLib before 1.3.2 does not check the OTAR crypto function returned status, potentially leading to spacecraft hijacking.

    YüksekCVSS 8,8İstismar yokEPSS %1

    nasa · cryptolib26 Nis 2025

  • CVE-2025-64096
    35İzleyin

    CryptoLib vulnerable to Stack Buffer Overflow in Crypto_Key_Update due to missing TLV length check

    YüksekCVSS 8,8İstismar yokEPSS %1

    nasa · cryptolib30 Eki 2025

  • CVE-2025-54878
    34İzleyin

    Heap Buffer Overflow in NASA CryptoLib 1.4.0 `Crypto_TC_Check_IV_Setup`

    YüksekCVSS 8,6İstismar yokEPSS %0

    nasa · cryptolib11 Ağu 2025