CNNVD-202601-4368 Information

CNNVD ID

CNNVD-202601-4368

CVE-2020-36958

  • CNNVD Published: 2026-01-26

Description (Chinese)

Kite是美国Kite公司的一款AI代码开发工具。 Kite 1.2020.1119.0版本存在代码问题漏洞,该漏洞源于KiteService服务路径未加引号,可能导致本地执行任意代码。

Description (English)

Kite is an AI code development tool for the United States company Kite. Kite 1.2020.1119.0 has a code gap, which stems from the lack of quotation marks on the service path of KiteService, which may lead to local implementation of any code.

Hazard Level

Medium

Vulnerability Type

代码问题

Affected Vendor

Kite

Published

2026-01-26

Last Modified

2026-02-24

References

https://www.exploit-db.com/exploits/49205 https://www.kite.com/ https://www.vulncheck.com/advisories/kite-kiteservice-unquoted-service-path

Share on: