nasa ait_core CVE Vulnerabilities (6)

CVEs: 6 CPE versions: View versions table

Summary

This page lists publicly disclosed CVE vulnerabilities affecting nasa ait_core (linked via NVD CPE). Each row includes severity scores, summaries, and publication dates to help identify and analyze security issues.

Showing 16 of 6 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2024-35061 NASA AIT-Core v2.5.2 was discovered to use unencrypted channels to exchange data over the network, allowing attackers to execute a man-in-the-middle attack. When chained with CVE-2024-35059, the CVE in subject leads to an unauthenticated, fully remote code execution. [email protected] 7.3 0.55% 2024-05-21 2026-06-17
CVE-2024-35060 An issue in the YAML Python library of NASA AIT-Core v2.5.2 allows attackers to execute arbitrary commands via supplying a crafted YAML file. [email protected] 7.5 0.47% 2024-05-21 2026-06-17
CVE-2024-35059 An issue in the Pickle Python library of NASA AIT-Core v2.5.2 allows attackers to execute arbitrary commands. [email protected] 7.5 0.45% 2024-05-21 2026-06-17
CVE-2024-35058 An issue in the API wait function of NASA AIT-Core v2.5.2 allows attackers to execute arbitrary code via supplying a crafted string. [email protected] 7.5 0.43% 2024-05-21 2026-06-17
CVE-2024-35057 An issue in NASA AIT-Core v2.5.2 allows attackers to execute arbitrary code via a crafted packet. [email protected] 7.5 0.44% 2024-05-21 2026-06-17
CVE-2024-35056 NASA AIT-Core v2.5.2 was discovered to contain multiple SQL injection vulnerabilities via the query_packets and insert functions. [email protected] 9.8 0.60% 2024-05-21 2026-06-17
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence