First published: Thu Jul 23 2020(Updated: )
httpRpmFs in WebCLI in Wind River VxWorks 5.5 through 7 SR0640 has no check for an escape from the web root.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Windriver Vxworks | >=5.5<7.0 | |
Windriver Vxworks | =7.0 | |
Windriver Vxworks | =7.0-sr0630 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-11440 is a vulnerability in the httpRpmFs component in WebCLI in Wind River VxWorks 5.5 through 7 SR0640 that allows an escape from the web root.
The severity of CVE-2020-11440 is high, with a CVSS score of 7.5.
Wind River VxWorks versions 5.5 through 7 SR0640, as well as version 7.0 and version 7.0-sr0630, are affected by CVE-2020-11440.
To fix CVE-2020-11440, it is recommended to update to a patched version of Wind River VxWorks.
More information about CVE-2020-11440 can be found on the Wind River website and the official CVE page.