LOW · 3.5

CVE-2002-2409

Photon microGUI in QNX Neutrino realtime operating system (RTOS) 6.1.0 and 6.2.0 allows attackers to read user clipboard information via a direct request to the 1.TEXT file in a directory whose name i...

Vulnerability Description

Photon microGUI in QNX Neutrino realtime operating system (RTOS) 6.1.0 and 6.2.0 allows attackers to read user clipboard information via a direct request to the 1.TEXT file in a directory whose name is a hex-encoded user ID.

CVSS Score

3.5

LOW

AV:N/AC:M/Au:S/C:P/I:N/A:N
Confidentiality
PARTIAL
Integrity
NONE
Availability
NONE

Affected Products

VendorProductVersions
QnxNeutrino Rtos6.1.0
QnxPhoton MicroguiAll versions

Related Weaknesses (CWE)

References

FAQ

What is CVE-2002-2409?

CVE-2002-2409 is a vulnerability with a CVSS score of 3.5 (LOW). Photon microGUI in QNX Neutrino realtime operating system (RTOS) 6.1.0 and 6.2.0 allows attackers to read user clipboard information via a direct request to the 1.TEXT file in a directory whose name i...

How severe is CVE-2002-2409?

CVE-2002-2409 has been rated LOW with a CVSS base score of 3.5/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2002-2409?

Check the references section above for vendor advisories and patch information. Affected products include: Qnx Neutrino Rtos, Qnx Photon Microgui.