cognitive cybersecurity intelligence

News and Analysis

Search

AWS Systems Manager Plugin Vulnerability Let Attackers Execute Arbitrary Code

AWS Systems Manager Plugin Vulnerability Let Attackers Execute Arbitrary Code

A critical vulnerability in the AWS Systems Manager (SSM) Agent allows attackers to execute arbitrary code with elevated privileges due to improper input validation in the ValidatePluginId function. This enables path traversal, potentially compromising systems. AWS has patched the issue (version 3.3.1957.0) and recommends immediate updates, strict input validation, and continuous monitoring to mitigate risks.

Source: cybersecuritynews.com –

Subscribe to newsletter

Subscribe to HEAL Security Dispatch for the latest healthcare cybersecurity news and analysis.

More Posts