CRITICAL🇵🇱 Wersja polska

CVE-2025-28384

CVSS 9.1v3.1pub. 2025-06-13upd. 2025-10-27

An issue in the /script-api/scripts/ endpoint of OpenC3 COSMOS before 6.1.0 allows attackers to execute a directory traversal.

🤖 AI Analysis
How it works

The vulnerability consists of improper path validation (CWE-22) in the /script-api/scripts/ endpoint. An attacker can construct a crafted network request containing path traversal sequences (e.g., '../'), which allow breaking out of the allowed scripts directory. The attack does not require authentication or user interaction, making it possible to perform remotely over the network.

Impact

An attacker can gain unauthorized access to system files and modify or overwrite them, leading to violation of confidentiality and integrity of data stored on the server. Due to the nature of the platform (a framework for managing space missions), the consequences may include disclosure of sensitive operational data or sabotage of mission scripts.

Mitigation & patch

OpenC3 COSMOS should be updated to version 6.1.0 or later. The fix is available in the official GitHub repository (pull request #1828, commit fc7e113). Release details available at: https://github.com/OpenC3/cosmos/releases/tag/v6.1.0

Who is affected

OpenC3 COSMOS in all versions prior to 6.1.0

Analysis generated by Claude AI (Anthropic) based on NVD data. Always verify with vendor.
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
  • Openc3 Cosmos

    APP
    Openc3
    6.0.0
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
Tags
Path Traversal
CWE
References

Related vulnerabilities

CVE-2026-42088CRITICAL9.6PL ✓same product

OpenC3 COSMOS: ominięcie uprawnień API i dostęp do usług wewnętrznych sieci Docker

CVE-2026-42087CRITICAL9.6PL ✓same product

SQL Injection w komponencie TSDB OpenC3 COSMOS (CVE-2026-42087)

CVE-2025-28386CRITICAL9.8PL ✓same product

RCE w komponencie Plugin Management OpenC3 COSMOS poprzez spreparowany plik .txt

CVE-2025-28389CRITICAL9.8PL ✓same product

OpenC3 COSMOS: Obejście uwierzytelnienia przez słabe wymagania haseł

CVE-2025-28388CRITICAL9.8PL ✓same product

OpenC3 COSMOS — hardcoded credentials w koncie Service Account