{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","feed_url":"https://feed.craftedsignal.io/tags/cve-2026-60113/feed.json","home_page_url":"https://feed.craftedsignal.io/","items":[{"_cs_actors":[],"_cs_cpes":[],"_cs_cves":[{"cvss":9.8,"id":"CVE-2026-60113"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["AMMOS Instrument Toolkit (AIT) Deep Space Network (DSN) Interface"],"_cs_severities":["critical"],"_cs_tags":["api-security","authentication-bypass","cve-2026-60113"],"_cs_type":"advisory","_cs_vendors":["NASA"],"content_html":"\u003cp\u003eThe AMMOS Instrument Toolkit (AIT) Deep Space Network (DSN) Interface, specifically versions prior to 2.2.2, contains a critical missing authentication vulnerability within its Space Link Extension (SLE) interface manager. This vulnerability stems from the application's failure to enforce authentication controls on seven specific API routes. An unauthenticated network attacker can exploit this flaw by sending direct, unauthenticated HTTP requests to the target interface. Successful exploitation grants the attacker the ability to manage Deep Space Network communication sessions, retrieve sensitive telemetry frame data, and inject arbitrary frames into active spacecraft links. Given the role of this toolkit in deep space communication, this flaw poses a high risk to both the confidentiality and integrity of command-and-control links between ground segments and remote space assets.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eThe vulnerability allows for the unauthorized control of Deep Space Network communication sessions, potential exfiltration of proprietary or sensitive spacecraft telemetry data, and the injection of malicious or arbitrary frames into mission-critical communication links. This could lead to a loss of operational control, data interception, or potential interference with spacecraft operations.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eUpgrade the AMMOS Instrument Toolkit (AIT) DSN Interface to version 2.2.2 or later immediately to address the missing authentication vulnerability tracked as CVE-2026-60113.\u003c/li\u003e\n\u003cli\u003eImplement network segmentation and access control lists (ACLs) to restrict access to the SLE interface manager endpoints to only authorized ground segment IP addresses.\u003c/li\u003e\n\u003cli\u003eMonitor web server access logs for anomalous requests targeting SLE interface API endpoints, particularly those originating from unauthorized or external network segments.\u003c/li\u003e\n\u003cli\u003eAudit existing API configurations to ensure that authentication and authorization middleware are correctly applied to all discovered service endpoints.\u003c/li\u003e\n\u003c/ul\u003e\n","date_modified":"2026-07-29T16:20:59Z","date_published":"2026-07-29T16:20:59Z","id":"https://feed.craftedsignal.io/briefs/2026-07-ammos-ait-auth-bypass/","summary":"The AMMOS Instrument Toolkit (AIT) DSN Interface prior to version 2.2.2 contains a missing authentication vulnerability in the Space Link Extension interface manager, allowing unauthenticated attackers to invoke sensitive API routes.","title":"Unauthenticated API Access in AMMOS Instrument Toolkit DSN Interface","url":"https://feed.craftedsignal.io/briefs/2026-07-ammos-ait-auth-bypass/"}],"language":"en","title":"CraftedSignal Threat Feed - Cve-2026-60113","version":"https://jsonfeed.org/version/1.1"}