Description
An issue in the YAML Python library of NASA AIT-Core v2.5.2 allows attackers to execute arbitrary commands via supplying a crafted YAML file.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
Wed, 04 Jun 2025 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Nasa
Nasa ait Core |
|
| CPEs | cpe:2.3:a:nasa:ait_core:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Nasa
Nasa ait Core |
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-02T03:07:46.420Z
Reserved: 2024-05-09T00:00:00.000Z
Link: CVE-2024-35060
Updated: 2024-08-02T03:07:46.420Z
Status : Analyzed
Published: 2024-05-21T19:15:10.313
Modified: 2025-06-03T14:16:05.870
Link: CVE-2024-35060
No data.
OpenCVE Enrichment
No data.
Weaknesses