CRITICAL
NASA-AMMOS
CVE published 2026-07-21
CVE-2026-47731
The AMMOS Instrument Toolkit (AIT-Core) is vulnerable to a critical path traversal and arbitrary file append attack due to a lack of proper validation of path-related form fields in the Binary Stream Capture (BSC) component. This issue affects BSC (Binary Stream Capture) and usage of the ait-bsc server, impacting AIT-Core versions before 3.1.1 and 2.x before 2.6.1. The vulnerability allows a remote client [truncated]