CVE-2001-0624 describes a local file disclosure vulnerability in QNX 2.4. An unauthenticated local attacker can read arbitrary files by directly accessing the FAT disk partition's mount point, such as /fs-dos. This vulnerability has a low CVSS score of 2.1, indicating low attack complexity and requiring local access, with the only impact being confidentiality. There is no evidence of active exploitation, nor are there publicly available exploit modules in Metasploit, Nuclei, or ExploitDB. Despite its age and low severity, the CVE has garnered some community discussion, with 10 mentions, primarily on GitHub.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
2.4CPE matchmatch criteria | cpe:2.3:a:qnx:qnx:2.4:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:L/AC:L/Au:N/C:P/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.6 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.