VendorsNASAcore_flight_system6.7.0
Vulnerabilities

NASA Core Flight System (cFS) 6.7.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

4CVEs
CVE-2025-25373
The Memory Management Module of NASA cFS (Core Flight System) Aquila has insecure permissions, which can be exploited to gain an RCE on the platform.
Published 2025-03-25 · Analyzed
9.8EPSS 0.005
CVE-2025-25371
NASA cFS (Core Flight System) Aquila is vulnerable to path traversal in the OSAL module, allowing the override of any arbitrary file on the system.
Published 2025-03-25 · Analyzed
7.5EPSS 0.006
CVE-2025-25372
NASA cFS (Core Flight System) Aquila is vulnerable to segmentation fault via sending a malicious telecommand to the Memory Management Module.
Published 2025-03-25 · Analyzed
7.5EPSS 0.005
CVE-2025-25374
In NASA cFS (Core Flight System) Aquila, it is possible to put the onboard software in a state that will prevent the launch of any external application, causing a platform denial of service.
Published 2025-03-25 · Analyzed
7.5EPSS 0.005