CVE-2017-20161 is a problematic injection vulnerability in the dump_wlan_at function of the MacGeiger ESSID Handler, affecting the macgeiger_project MacGeiger software. This high-severity vulnerability (CVSS 7.8) requires local network access and has high impact on confidentiality, integrity, and availability, though attack complexity and exploitability are considered difficult. There is no evidence of active exploitation, no publicly available exploit code in Metasploit, Nuclei, or ExploitDB, and minimal community discussion or media coverage. A patch (57f1dd50a4821b8c8e676e8020006ae4bfd3c9cb) is recommended to remediate this issue.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 2017-12-02CPE matchmatch criteria | cpe:2.3:a:macgeiger_project:macgeiger:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:A/AC:H/PR:N/UI:R/S:U/C:L/I:L/A:L
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.