CVE-2020-6932
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
12/08/2020
Last modified:
21/07/2021
Description
An information disclosure and remote code execution vulnerability in the slinger web server of the BlackBerry QNX Software Development Platform versions 6.4.0 to 6.6.0 could allow an attacker to potentially read arbitrary files and run arbitrary executables in the context of the web server.
Impact
Base Score 3.x
9.80
Severity 3.x
CRITICAL
Base Score 2.0
10.00
Severity 2.0
HIGH
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:a:blackberry:qnx_software_development_platform:*:*:*:*:*:*:*:* | 6.4.0 (including) | 6.6.0 (including) |
To consult the complete list of CPE names with products and versions, see this page