CVE-2024-12652

A Improper Control of Generation of Code ('Code Injection') vulnerability in groovy script function in SmartRobots Conversational AI Platform before v7.2.0 allows remote authenticated users to perform arbitrary system commands via Groovy code.
Code Injection
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
UNKNOWN
---
ZUSO ARTCNA
---
---
CISA-ADPADP
---
---