CVE-2017-20161 - CVE House
Back to Database
Status published Medium CVE-2017-20161

rofl0r MacGeiger ESSID macgeiger.c dump_wlan_at injection

Vulnerability Description

A vulnerability classified as problematic has been found in rofl0r MacGeiger. Affected is the function dump_wlan_at of the file macgeiger.c of the component ESSID Handler. The manipulation leads to injection. Access to the local network is required for this attack to succeed. The complexity of an attack is rather high. The exploitability is told to be difficult. The name of the patch is 57f1dd50a4821b8c8e676e8020006ae4bfd3c9cb. It is recommended to apply a patch to fix this issue. The identifier of this vulnerability is VDB-217188.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2017-20161

Credits & Attribution

The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:

  • VulDB GitHub Commit Analyzer

Affected Vendor

Affected Software

MacGeiger
Vulnerable Versions:
Unknown

Timeline

Official Publish: January 2nd, 2023
Last Modified: August 5th, 2024
Added to House: July 20th, 2026

CVSS Vectors

V3: CVSS:3.0/AV:A/AC:H/PR:N/UI:R/S:U/C:L/I:L/A:L

Weaknesses (CWE)