PT-2026-65834 · Unknown · Ammos Instrument Toolkit (Ait) Gui
CVSS v3.1
9.8
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
AMMOS Instrument Toolkit (AIT) GUI versions prior to 2.5.1
Description
An authentication flaw allows an unauthenticated network attacker to obtain a valid session and issue arbitrary spacecraft commands. This is possible by calling the
Sessions.create() function, which fails to perform credential checks. Once a session is established, an attacker can invoke the handle cmd() function to forward arbitrary commands directly to the AIT command bus, as there is no authentication gate between session creation and command dispatch.Recommendations
Update AMMOS Instrument Toolkit (AIT) GUI to version 2.5.1 or later.
As a temporary mitigation, restrict network access to the
Sessions.create() and handle cmd() functions.Exploit
Fix
Missing Authentication
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ammos Instrument Toolkit (Ait) Gui