CVE-2026-67979: Critical severity nasa cFS vulnerability
Incorrect access control in the Executive Services dynamic application start path component of NASA cFS v7.0.1 allows attackers to execute arbitrary code via placing a shared object on target storage.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-67979?
CVE-2026-67979 has a severity score of 77, indicating a high risk of exploitation.
What is CVE-2026-67979?
CVE-2026-67979 is a vulnerability in NASA cFS v7.0.1 that allows unauthorized code execution due to incorrect access control.
How do I fix CVE-2026-67979?
To fix CVE-2026-67979, ensure that the application restricts the dynamic application start path to prevent unauthorized access.
What systems are affected by CVE-2026-67979?
CVE-2026-67979 affects versions of NASA cFS prior to the patch addressing this vulnerability.
What are the potential impacts of exploiting CVE-2026-67979?
Exploiting CVE-2026-67979 could allow attackers to execute arbitrary code on the target system, leading to a compromise of the system integrity.