No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Thu, 30 Jul 2026 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Nasa-ammos
Nasa-ammos ait-dsn |
|
| Vendors & Products |
Nasa-ammos
Nasa-ammos ait-dsn |
|
| Metrics |
ssvc
|
Wed, 29 Jul 2026 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | AMMOS Instrument Toolkit (AIT) Deep Space Network (DSN) Interface before 2.2.2 contains a missing authentication vulnerability in the Space Link Extension (SLE) interface manager that allows unauthenticated network attackers to access seven unprotected API routes by sending direct HTTP requests with no credentials. Attackers can reach the exposed SLE endpoints to start or stop Deep Space Network communication sessions, retrieve telemetry frame data, and inject arbitrary frames into active spacecraft links. | |
| Title | AIT-DSN < 2.2.2 Missing Authentication via SLE API Routes | |
| Weaknesses | CWE-306 | |
| References |
|
|
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-07-30T13:54:24.751Z
Reserved: 2026-07-08T13:27:53.031Z
Link: CVE-2026-60113
Updated: 2026-07-30T13:54:18.576Z
No data.
No data.
OpenCVE Enrichment
Updated: 2026-07-30T14:02:00Z