CVE-2020-6932
Summary
| CVE | CVE-2020-6932 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2020-08-12 13:15:00 UTC |
| Updated | 2021-07-21 11:39:00 UTC |
| Description | An information disclosure and remote code execution vulnerability in the slinger web server of the BlackBerry QNX Software Development Platform versions 6.4.0 to 6.6.0 could allow an attacker to potentially read arbitrary files and run arbitrary executables in the context of the web server. |
Risk And Classification
Problem Types: NVD-CWE-noinfo
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Blackberry | Qnx Software Development Platform | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| QNX-2020-001 Vulnerability in slinger web server Impacts BlackBerry QNX Software Development Platform | MISC | support.blackberry.com | Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.