Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mxj6-x52w-4g7m

Опубликовано: 02 июн. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

In wlan AP driver, there is a possible way to inject arbitrary packet due to a missing permission check. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00413202; Issue ID: MSV-3303.

In wlan AP driver, there is a possible way to inject arbitrary packet due to a missing permission check. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00413202; Issue ID: MSV-3303.

EPSS

Процентиль: 40%
0.00179
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-863

Связанные уязвимости

CVSS3: 9.8
nvd
7 месяцев назад

In wlan AP driver, there is a possible way to inject arbitrary packet due to a missing permission check. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00413202; Issue ID: MSV-3303.

CVSS3: 9.8
fstec
7 месяцев назад

Уязвимость драйвера wlan AP микропрограммного обеспечения микросхем MediaTek, позволяющая нарушителю повысить свои привилегии

EPSS

Процентиль: 40%
0.00179
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-863