VYPR

cFS Aquila

by Nasa

CVEs (3)

  • CVE-2025-25373CriMar 25, 2025
    risk 0.64cvss 9.8epss 0.00

    The Memory Management Module of NASA cFS (Core Flight System) Aquila has insecure permissions, which can be exploited to gain an RCE on the platform.

  • CVE-2025-25374HigMar 25, 2025
    risk 0.49cvss 7.5epss 0.01

    In NASA cFS (Core Flight System) Aquila, it is possible to put the onboard software in a state that will prevent the launch of any external application, causing a platform denial of service.

  • CVE-2025-25371HigMar 25, 2025
    risk 0.49cvss 7.5epss 0.01

    NASA cFS (Core Flight System) Aquila is vulnerable to path traversal in the OSAL module, allowing the override of any arbitrary file on the system.