Source |
The Hacker News |
Identifiant |
8644792 |
Date de publication |
2025-01-30 18:03:00 (vue: 2025-01-30 14:08:11) |
Titre |
Lightning AI Studio Vulnerability Allowed RCE via Hidden URL Parameter |
Texte |
Cybersecurity researchers have disclosed a critical security flaw in the Lightning AI Studio development platform that, if successfully exploited, could allow for remote code execution.
The vulnerability, rated a CVSS score of 9.4, enables "attackers to potentially execute arbitrary commands with root privileges" by exploiting a hidden URL parameter, application security firm Noma said in a
Cybersecurity researchers have disclosed a critical security flaw in the Lightning AI Studio development platform that, if successfully exploited, could allow for remote code execution.
The vulnerability, rated a CVSS score of 9.4, enables "attackers to potentially execute arbitrary commands with root privileges" by exploiting a hidden URL parameter, application security firm Noma said in a |
Notes |
★★★
|
Envoyé |
Oui |
Condensat |
allow allowed application arbitrary attackers code commands could critical cvss cybersecurity development disclosed enables execute execution exploited exploiting firm flaw have hidden lightning noma parameter platform potentially privileges rated rce remote researchers root said score security studio successfully url vulnerability |
Tags |
Vulnerability
|
Stories |
|
Move |
|