CVE-2011-4182 Vulnerability Details

  /     /     /  

CVE-2011-4182 Metadata Quick Info

CVE Published: 12/06/2018 | CVE Updated: 17/09/2024 | CVE Year: 2011
Source: microfocus | Vendor: SUSE Linux Enterprise | Product: sysconfig
Status : PUBLISHED

CVE-2011-4182 Description

Missing escaping of ESSID values in sysconfig of SUSE Linux Enterprise allows attackers controlling an access point to cause execute arbitrary code. Affected releases are sysconfig prior to 0.83.7-2.1.

Metrics

CVSS Version: 3.1 | Base Score: n/a
Vector: n/a

l➤ Exploitability Metrics:
    Attack Vector (AV)*
    Attack Complexity (AC)*
    Privileges Required (PR)*
    User Interaction (UI)*
    Scope (S)*

l➤ Impact Metrics:
    Confidentiality Impact (C)*
    Integrity Impact (I)*
    Availability Impact (A)*

Weakness Enumeration (CWE)

CWE-ID: CWE-77
CWE Name: CWE-77
Source: SUSE Linux Enterprise

Common Attack Pattern Enumeration and Classification (CAPEC)

CAPEC-ID:
CAPEC Description:


Source: NVD (National Vulnerability Database).