Kismet ESSID Remote Command Execution Vulnerability
BID:4883
Info
Kismet ESSID Remote Command Execution Vulnerability
| Bugtraq ID: | 4883 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | May 29 2002 12:00AM |
| Updated: | May 29 2002 12:00AM |
| Credit: | Vulnerability discovery credited to KF <[email protected]>. |
| Vulnerable: |
Kismet Project Kismet 2.2.1 Kismet Project Kismet 2.2 |
| Not Vulnerable: |
Kismet Project Kismet 2.2.2 |
Discussion
Kismet ESSID Remote Command Execution Vulnerability
Kismet is a freely available, open source software package maintained by the Kismet Project.
A maliciously formatted ESSID may make it possible for a remote user to execute arbitrary commands. The SayText() function of Kismet passes text directly to the shell of the executing user. By embedding commands with backticks in data sent via SayText(), a user may be able to execute commands.
Kismet is a freely available, open source software package maintained by the Kismet Project.
A maliciously formatted ESSID may make it possible for a remote user to execute arbitrary commands. The SayText() function of Kismet passes text directly to the shell of the executing user. By embedding commands with backticks in data sent via SayText(), a user may be able to execute commands.
Exploit / POC
Kismet ESSID Remote Command Execution Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.