First published: Tue Mar 25 2025(Updated: )
NASA cFS (Core Flight System) Aquila is vulnerable to path traversal in the OSAL module, allowing the override of any arbitrary file on the system.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
NASA cFS Aquila | ||
NASA core Flight System (cFS) | =aquila |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-25371 has a high severity rating due to its potential for unauthorized file access via path traversal.
To fix CVE-2025-25371, it is recommended to implement proper input validation to mitigate path traversal attacks in the OSAL module.
CVE-2025-25371 specifically affects the NASA Core Flight System Aquila version.
Path traversal allows an attacker to access files outside the intended directory structure, potentially leading to sensitive file exposure or system compromise.
As of now, there are no publicly available exploits specifically targeting CVE-2025-25371.