Description
wifiscanner.js in thingsSDK WiFi Scanner 1.0.1 allows Code Injection because it can be used with options to overwrite the default executable/binary path and its arguments. An attacker can abuse this functionality to execute arbitrary code.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-1135 | wifiscanner.js in thingsSDK WiFi Scanner 1.0.1 allows Code Injection because it can be used with options to overwrite the default executable/binary path and its arguments. An attacker can abuse this functionality to execute arbitrary code. |
Github GHSA |
GHSA-m6rw-m2v9-7hx4 | OS Command Injection in wifiscanner |
References
| Link | Providers |
|---|---|
| https://github.com/thingsSDK/wifiscanner/issues/1 |
|
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T13:15:20.693Z
Reserved: 2020-06-27T00:00:00.000Z
Link: CVE-2020-15362
No data.
Status : Modified
Published: 2020-06-29T17:15:11.430
Modified: 2024-11-21T05:05:24.747
Link: CVE-2020-15362
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA