CVE-2006-1385
- EPSS 4.87%
- Veröffentlicht 24.03.2006 11:02:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Stack-based buffer overflow in the parseTaggedData function in WavePacket.mm in KisMAC R54 through R73p allows remote attackers to execute arbitrary code via multiple SSIDs in a Cisco vendor tag in a 802.11 management frame.
CVE-2003-0703
- EPSS 0.05%
- Veröffentlicht 17.09.2003 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
KisMAC before 0.05d trusts user-supplied variables to load arbitrary kernels or kernel modules, which allows local users to gain privileges via the $DRIVER_KEXT environment variable as used in (1) viha_driver.sh, (2) macjack_load.sh, or (3) airojack_...
CVE-2003-0704
- EPSS 0.05%
- Veröffentlicht 17.09.2003 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
KisMAC before 0.05d trusts user-supplied variables when chown'ing files or directories, which allows local users to gain privileges via the $DRIVER_KEXT environment variable in (1) viha_driver.sh, (2) macjack_load.sh, (3) airojack_load.sh, (4) setuid...
CVE-2002-2242
- EPSS 0.23%
- Veröffentlicht 31.12.2002 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
The Apple Package Manager in KisMAC 0.02a and earlier modifies file permissions of sensitive files after installation, which could allow attackers to conduct unauthorized activities on those files.