📦 Ait Core

by Nasa

🔍 What is Ait Core?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-35056

CRITICAL CVSS 9.8 May 21, 2024

NASA AIT-Core v2.5.2 contains SQL injection vulnerabilities in the query_packets and insert functions that allow attackers to execute arbitrary SQL commands. This affects systems running the vulnerabl...

CVE-2024-35059

HIGH CVSS 7.5 May 21, 2024

This vulnerability in NASA AIT-Core's Python Pickle library allows attackers to execute arbitrary code through deserialization of untrusted data. It affects NASA AIT-Core v2.5.2 users who process untr...

CVE-2024-35061

HIGH CVSS 7.3 May 21, 2024

NASA AIT-Core v2.5.2 uses unencrypted network channels, enabling man-in-the-middle attacks. When combined with CVE-2024-35059, this allows unauthenticated remote code execution. Organizations using AI...

CVE-2024-35058

HIGH CVSS 7.5 May 21, 2024

This vulnerability in NASA AIT-Core's API wait function allows attackers to execute arbitrary code by sending a specially crafted string. It affects NASA AIT-Core version 2.5.2 and potentially earlier...