V
Scaner-VS
HomeCatalogSourcesCWECAPECATT&CKMitigationsProductsVendorsDocs
Filters

All vulnerabilities

60 / 60
Vendor: nasa×Clear all
9.8
CVE-2019-1010060DEB
NASA CFITSIO prior to 3.43 is affected by: Buffer Overflow. The impact is: arbitrary code execu…
2019-01-01Pre-auth
EPSS7.2%
pct 93
7.4
CVE-2018-3849DEB
In the ffghtb function in NASA CFITSIO 3.42, specially crafted images parsed via the library ca…
2018-01-01
EPSS4.0%
pct 89
7.4
CVE-2018-3848DEB
In the ffghbn function in NASA CFITSIO 3.42, specially crafted images parsed via the library ca…
2018-01-01
EPSS3.9%
pct 88
7.4
CVE-2018-3846DEB
In the ffgphd and ffgtkn functions in NASA CFITSIO 3.42, specially crafted images parsed via th…
2018-01-01
EPSS3.1%
pct 85
8.8
CVE-2018-3847DEB
Multiple exploitable buffer overflow vulnerabilities exist in image parsing functionality of th…
2018-01-01Pre-auth
EPSS2.8%
pct 84
9.1
CVE-2025-30216ANC
CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol -…
2025-01-01Pre-auth
EPSS2.2%
pct 79
8.8
CVE-2018-1000048CVE
NASA RtRetrievalFramework version v1.0 contains a CWE-502 vulnerability in Data retrieval funct…
2018-01-01Pre-auth
EPSS2.1%
pct 78
8.8
CVE-2018-1000047CVE
NASA Kodiak version v1.0 contains a CWE-502 vulnerability in Kodiak library's data processing f…
2018-01-01Pre-auth
EPSS2.1%
pct 78
7.8
CVE-2018-1000046CVE
NASA Pyblock version v1.0 - v1.3 contains a CWE-502 vulnerability in Radar data parsing library…
2018-01-01
EPSS1.7%
pct 74
7.8
CVE-2018-1000045CVE
NASA Singledop version v1.0 contains a CWE-502 vulnerability in NASA Singledop library (Weather…
2018-01-01
EPSS1.7%
pct 74
9.8
CVE-2024-55030CVE
A command injection vulnerability in the Command Dispatcher Service of NASA Fprime v3.4.3 allow…
2024-01-01Pre-auth
EPSS1.6%
pct 72
8.9
CVE-2025-29912ANC
CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol -…
2025-01-01Pre-auth
EPSS1.1%
pct 62
8.9
CVE-2025-29909ANC
CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol -…
2025-01-01Pre-auth
EPSS1.0%
pct 57
7.5
CVE-2023-45282CVE
In NASA Open MCT (aka openmct) before 3.1.0, prototype pollution can occur via an import action.
2023-01-01Pre-auth
EPSS0.9%
pct 56
7.8
CVE-2025-59534ANC
CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol -…
2025-01-01
EPSS0.9%
pct 55
8.9
CVE-2025-29911ANC
CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol -…
2025-01-01Pre-auth
EPSS0.7%
pct 47
9.8
CVE-2024-55028CVE
A template injection vulnerability in the Dashboard of NASA Fprime v3.4.3 allows attackers to e…
2024-01-01Pre-auth
EPSS0.7%
pct 47
8.9
CVE-2025-29913ANC
CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol -…
2025-01-01Pre-auth
EPSS0.7%
pct 46
9.8
CVE-2024-35056CVE
NASA AIT-Core v2.5.2 was discovered to contain multiple SQL injection vulnerabilities via the q…
2024-01-01Pre-auth
EPSS0.6%
pct 44
6.1
CVE-2022-23054CVE
Openmct versions 1.3.0 to 1.7.7 are vulnerable against stored XSS via the “Summary Widget” elem…
2022-01-01Pre-auth
EPSS0.6%
pct 43
6.1
CVE-2022-23053CVE
Openmct versions 1.3.0 to 1.7.7 are vulnerable against stored XSS via the “Condition Widget” el…
2022-01-01Pre-auth
EPSS0.6%
pct 43
6.1
CVE-2022-22126CVE
Openmct versions 1.3.0 to 1.7.7 are vulnerable against stored XSS via the “Web Page” element, t…
2022-01-01Pre-auth
EPSS0.6%
pct 43
7.3
CVE-2024-35061CVE
NASA AIT-Core v2.5.2 was discovered to use unencrypted channels to exchange data over the netwo…
2024-01-01Pre-auth
EPSS0.5%
pct 41
9.3
CVE-2025-30356ANC
CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol -…
2025-01-01Pre-auth
EPSS0.5%
pct 41
8.2
CVE-2026-22026ANC
CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol -…
2026-01-01Pre-auth
EPSS0.5%
pct 40
7.5
CVE-2025-25371CVE
NASA cFS (Core Flight System) Aquila is vulnerable to path traversal in the OSAL module, allowi…
2025-01-01Pre-auth
EPSS0.5%
pct 40
8.2
CVE-2026-22023ANC
CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol -…
2026-01-01Pre-auth
EPSS0.5%
pct 40
8.2
CVE-2026-21900ANC
CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol -…
2026-01-01Pre-auth
EPSS0.5%
pct 39
7.5
CVE-2024-44910CVE
NASA CryptoLib v1.3.0 was discovered to contain an Out-of-Bounds read via the AOS subsystem (cr…
2024-01-01Pre-auth
EPSS0.5%
pct 39
6.3
CVE-2026-22025ANC
CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol -…
2026-01-01Pre-auth
EPSS0.5%
pct 38
7.5
CVE-2024-44911CVE
NASA CryptoLib v1.3.0 was discovered to contain an Out-of-Bounds read via the TC subsystem (cry…
2024-01-01Pre-auth
EPSS0.5%
pct 38
9.9
CVE-2025-46674CVE
NASA CryptoLib before 1.3.2 uses Extended Procedures that are a Work in Progress (not intended …
2025-01-01
EPSS0.5%
pct 37
7.5
CVE-2024-35060CVE
An issue in the YAML Python library of NASA AIT-Core v2.5.2 allows attackers to execute arbitra…
2024-01-01
EPSS0.5%
pct 37
7.5
CVE-2024-44912CVE
NASA CryptoLib v1.3.0 was discovered to contain an Out-of-Bounds read via the TM subsystem (cry…
2024-01-01Pre-auth
EPSS0.5%
pct 36
7.5
CVE-2025-25374CVE
In NASA cFS (Core Flight System) Aquila, it is possible to put the onboard software in a state …
2025-01-01Pre-auth
EPSS0.5%
pct 36
5.5
CVE-2025-29910ANC
CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol -…
2025-01-01Pre-auth
EPSS0.5%
pct 36
7.5
CVE-2026-22697ANC
CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol -…
2026-01-01Pre-auth
EPSS0.5%
pct 35
7.5
CVE-2024-35059CVE
An issue in the Pickle Python library of NASA AIT-Core v2.5.2 allows attackers to execute arbit…
2024-01-01
EPSS0.4%
pct 35
9.8
CVE-2025-25373CVE
The Memory Management Module of NASA cFS (Core Flight System) Aquila has insecure permissions, …
2025-01-01Pre-auth
EPSS0.4%
pct 35
5.4
CVE-2023-45885CVE
Cross Site Scripting (XSS) vulnerability in NASA Open MCT (aka openmct) through 3.1.0 allows at…
2023-01-01
EPSS0.4%
pct 35
Select a vulnerability on the left to open the preview.