Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Abhishekherle

#25652of 53,638
9.8Total CVSS
Vulnerabilities · 1
PT-2020-14390
9.8
2020-06-29
Thingssdk · Thingssdk Wifi Scanner · CVE-2020-15362
**Name of the Vulnerable Software and Affected Versions** thingsSDK WiFi Scanner version 1.0.1 **Description** The issue allows code injection because the wifiscanner.js component can be used with options to overwrite the default executable/binary path and its arguments, enabling an attacker to execute arbitrary code. **Recommendations** For version 1.0.1, consider restricting the use of the wifiscanner.js component until a patch is available to prevent arbitrary code execution.