Impact
The vulnerability resides in the CF_CFDP_RecvMd() function of NASA’s Core Flight System (cFS) version 7.0.1. It enables an attacker to dictate the storage location for received content and data, effectively allowing the attacker to control where the files are written. This flaw can lead to unintended disclosure of sensitive information if files are written to or retrieved from insecure directories. The weakness is an example of improper input validation and path handling, specifically allowing an attacker to influence a file system operation without sufficient checks.
Affected Systems
NASA Core Flight System (cFS) version 7.0.1 is impacted. No other vendors or product versions are listed as affected.
Risk and Exploitability
The CVSS score of 7.5 indicates a high severity vulnerability, while the EPSS score of less than 1% suggests that exploitation is unlikely but not impossible. The vulnerability is not listed in CISA’s KEV catalog, implying no widely known public exploitation. Because the flaw allows an attacker to write to arbitrary locations, the potential impact ranges from local information disclosure to broader system compromise if privileged data is written.
OpenCVE Enrichment