CVE Database
/

CVE-2024-52958

Back to search

CVE-2024-52958

Published: Nov 27, 2024

Modified: Nov 27, 2024

PUBLISHED

Description

A improper verification of cryptographic signature vulnerability in plugin management in iota C.ai Conversational Platform from 1.0.0 through 2.1.3 allows remote authenticated users to load a malicious DLL via upload plugin function.

VendorProductVersions

Galaxy Software Services Corporation

iota C.ai Conversational Platform

affected
1.0.0 - <= 2.1.3

Weaknesses (CWE)

References

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now