PT-2023-10613 · Unknown · Rofl0R Macgeiger

CVE-2017-20161

·

Publicado

2023-01-02

·

Atualizado

2024-05-17

CVSS v3.1

7.8

Alta

VetorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions rofl0r MacGeiger (affected versions not specified)
Description A problematic vulnerability has been found in rofl0r MacGeiger, affecting the dump wlan at function of the macgeiger.c file in the ESSID Handler component. The manipulation leads to injection, requiring access to the local network to succeed. The complexity of an attack is rather high, and the exploitability is difficult.
Recommendations To fix this issue, it is recommended to apply a patch with the name 57f1dd50a4821b8c8e676e8020006ae4bfd3c9cb. As a temporary workaround, consider disabling the dump wlan at function until a patch is available. Restrict access to the local network to minimize the risk of exploitation.

Correção

Special Elements Injection

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2017-20161

Produtos afetados

Rofl0R Macgeiger