7.1
CVE-2023-32701
- EPSS 0.09%
- Veröffentlicht 14.11.2023 19:15:27
- Zuletzt bearbeitet 09.09.2025 15:15:30
- Quelle secure@blackberry.com
- CVE-Watchlists
- Unerledigt
Vulnerability in Networking Stack Impacts QNX Software Development Platform (SDP)
Improper Input Validation in the Networking Stack of QNX SDP version(s) 6.6, 7.0, and 7.1 could allow an attacker to potentially cause Information Disclosure or a Denial-of-Service condition.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Blackberry ≫ Qnx Software Development Platform Version6.6.0
Blackberry ≫ Qnx Software Development Platform Version7.0
Blackberry ≫ Qnx Software Development Platform Version7.1
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.09% | 0.267 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.1 | 1.8 | 5.2 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
|
| secure@blackberry.com | 7.1 | 1.8 | 5.2 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
|
CWE-1288 Improper Validation of Consistency within Input
The product receives a complex input with multiple elements or fields that must be consistent with each other, but it does not validate or incorrectly validates that the input is actually consistent.