A Vulnerability in Lightning AI Studio Resulted in RCE through Concealed URL Element

Experts in online security have exposed a severe weakness in the development platform of Lightning AI Studio that, if effectively taken advantage of, could lead to remote code execution. The vulnerability, assessed with a CVSS score of 9.

Experts in online security have exposed a severe weakness in the development platform of Lightning AI Studio that, if effectively taken advantage of, could lead to remote code execution. The vulnerability, assessed with a CVSS score of 9.4, permits “malicious actors to potentially execute unauthorized commands with elevated privileges” by manipulating a concealed URL parameter, as reported by the cybersecurity company Noma.

About Author

Subscribe To InfoSec Today News

You have successfully subscribed to the newsletter

There was an error while trying to send your request. Please try again.

World Wide Crypto will use the information you provide on this form to be in touch with you and to provide updates and marketing.