CVE-2020-6932

An information disclosure and remote code execution vulnerability in the slinger web server of the BlackBerry QNX Software Development Platform versions 6.4.0 to 6.6.0 could allow an attacker to potentially read arbitrary files and run arbitrary executables in the context of the web server.

Scoring

Severity
CRITICAL
CVSS base score
10
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:L
EPSS probability
3.63%
CWE
CWE-150
Published
2020-08-12
Last modified
2026-03-14

Affected products

Weakness type

Related vulnerabilities

Markdown version · Browse all CVEs