CVE-2012-2095

The SetWiredProperty function in the D-Bus interface in WICD before 1.7.2 allows local users to write arbitrary configuration settings and gain privileges via a crafted property name in a dbus message.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
6.9 UNKNOWN
LOCAL
MEDIUM
AV:L/AC:M/Au:N/C:C/I:C/A:C
redhatCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 67%
VendorProductVersion
david_paleinowicd
𝑥
≤ 1.7.1
david_paleinowicd
1.2.7
david_paleinowicd
1.3.1
david_paleinowicd
1.4.0
david_paleinowicd
1.4.1
david_paleinowicd
1.4.2
david_paleinowicd
1.5.0
david_paleinowicd
1.5.1
david_paleinowicd
1.5.2
david_paleinowicd
1.5.3
david_paleinowicd
1.5.4
david_paleinowicd
1.5.5
david_paleinowicd
1.5.6
david_paleinowicd
1.5.7
david_paleinowicd
1.5.8
david_paleinowicd
1.5.9
david_paleinowicd
1.6.0
david_paleinowicd
1.6.2
david_paleinowicd
1.7.0
david_paleinowicd
1.7.1:beta3
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
wicd
precise
Fixed 1.7.2.3-1ubuntu0.1
released
oneiric
Fixed 1.7.0+ds1-6ubuntu0.11.10.1
released
natty
Fixed 1.7.0+ds1-6ubuntu0.11.04.1
released
lucid
Fixed 1.7.0+ds1-2ubuntu0.1
released
hardy
dne
References