Back

CRITICAL

FlyCASS Cockpit Access Security System (CASS) SQL Injection

Published Sep 5, 2024

Description

FlyCASS CASS and KCM systems did not correctly filter SQL queries, which made them vulnerable to attack by outside attackers with no authentication.

Affected products

Remediation

Vendor solution

According to the researchers, the security gap in the FlyCASS online portal has been closed.

Metrics

Weaknesses (1)

References (1)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner icscert
Published Sep 5, 2024
Updated Nov 25, 2025
Reserved Sep 3, 2024
CISA Vulnrichment
Updated Nov 25, 2025
NVD
Status Analyzed
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a