PT-2023-10613 · Unknown · Rofl0R Macgeiger
CVE-2017-20161
·
Publicado
2023-01-02
·
Atualizado
2024-05-17
CVSS v3.1
7.8
Alta
| Vetor | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
rofl0r MacGeiger (affected versions not specified)
Description
A problematic vulnerability has been found in rofl0r MacGeiger, affecting the
dump wlan at function of the macgeiger.c file in the ESSID Handler component. The manipulation leads to injection, requiring access to the local network to succeed. The complexity of an attack is rather high, and the exploitability is difficult.Recommendations
To fix this issue, it is recommended to apply a patch with the name 57f1dd50a4821b8c8e676e8020006ae4bfd3c9cb. As a temporary workaround, consider disabling the
dump wlan at function until a patch is available. Restrict access to the local network to minimize the risk of exploitation.Correção
Special Elements Injection
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Rofl0R Macgeiger