In wlan STA, there is a possible way to trick a client to connect to an AP with spoofed SSID. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08990446 / ALPS09057442; Issue ID: MSV-1598.
References
Configurations
No configuration.
History
06 Jan 2025, 15:15
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.5 |
06 Jan 2025, 04:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-01-06 04:15
Updated : 2025-01-06 15:15
NVD link : CVE-2024-20153
Mitre link : CVE-2024-20153
CVE.ORG link : CVE-2024-20153
JSON object : View
Products Affected
No product.
CWE
CWE-304
Missing Critical Step in Authentication