QID 981872
QID 981872: Nodejs (npm) Security Update for wifiscanner (GHSA-m6rw-m2v9-7hx4)
wifiscanner.js in thingsSDK WiFi Scanner 1.0.1 allows Code Injection because it can be used with options to overwrite the default executable/binary path and its arguments. An attacker can abuse this functionality to execute arbitrary code.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-m6rw-m2v9-7hx4 for updates pertaining to this vulnerability.
Vendor References
- GHSA-m6rw-m2v9-7hx4 -
github.com/advisories/GHSA-m6rw-m2v9-7hx4
CVEs related to QID 981872
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-m6rw-m2v9-7hx4 | wifiscanner |
|