# CVE-2020-6932

## Summary

- **CVE ID:** CVE-2020-6932
- **Severity:** CRITICAL
- **CVSS Score:** 10 (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:L)
- **CWE:** CWE-150
- **Published:** Aug 12, 2020
- **Last Modified:** Mar 14, 2026

## Description

An information disclosure and remote code execution vulnerability in the slinger web server of the BlackBerry QNX Software Development Platform versions 6.4.0 to 6.6.0 could allow an attacker to potentially read arbitrary files and run arbitrary executables in the context of the web server.

## Affected Products

- BlackBerry — QNX Software Development Platform (SDP) (6.4.0)

## References

- [CNA](http://support.blackberry.com/kb/articleDetail?articleNumber=000061411)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 3.63%
- **EPSS Percentile:** 87.6

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-18._