CVE Database
/

CVE-2024-52959

Back to search

CVE-2024-52959

Published: Nov 27, 2024

Modified: Nov 27, 2024

PUBLISHED

Description

A Improper Control of Generation of Code ('Code Injection') vulnerability in plugin management in iota C.ai Conversational Platform from 1.0.0 through 2.1.3 allows remote authenticated users to perform arbitrary system commands via a DLL file.

VendorProductVersions

Galaxy Software Services Corporation

iota C.ai Conversational Platform

affected
1.0.0 - <= 2.1.3

Weaknesses (CWE)

References

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now