{ "id": "CVE-2024-41708", "sourceIdentifier": "cve@mitre.org", "published": "2024-09-25T17:15:18.823", "lastModified": "2024-09-25T17:15:18.823", "vulnStatus": "Received", "cveTags": [], "descriptions": [ { "lang": "en", "value": "An issue was discovered in AdaCore ada_web_services 20.0 allows an attacker to escalate privileges and steal sessions via the Random_String() function in the src/core/aws-utils.adb module." } ], "metrics": {}, "references": [ { "url": "https://docs.adacore.com/corp/security-advisories/SEC.AWS-0040-v2.pdf", "source": "cve@mitre.org" }, { "url": "https://github.com/AdaCore/aws", "source": "cve@mitre.org" } ] }