Kismet is a wireless network detection and analysis tool widely used for network reconnaissance and security assessment, with its vulnerability profile concentrating in the core Kismet application itself. The observed disclosures center on weakness classes categorized as miscellaneous, reflecting the varied nature of flaws in a complex data-acquisition and analysis tool; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Kismet over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2005-2626HIGH Unspecified vulnerability in Kismet before 2005-08-R1 allows remote attackers to have an unknown impact via unprintable characters in the SSID. | Aug 19, 2005 | 10.0 | 26 | NO | NO |
CVE-2005-2627HIGH Multiple integer underflows in Kismet before 2005-08-R1 allow remote attackers to execute arbitrary code via (1) kernel headers in a pcap file or (2) data frame dissection, which l | Aug 19, 2005 | 7.5 | 21 | NO | NO |
CVE-2002-0904HIGH SayText function in Kismet 2.2.1 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters (backtick or pipe) in the essid argument. | Oct 4, 2002 | 7.5 | 20 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Kismet.
Media articles that mention a CVE ID that affects a product developed by Kismet — matched by CVE ID, not by vendor name.