Loading HuntDB...

GHSA-mh3c-527f-cwqv

GitHub Security Advisory

⚠ Unreviewed HIGH Has CVE

Advisory Details

The IEEE 802.11 standard sometimes enables an adversary to trick a victim into connecting to an unintended or untrusted network with Home WEP, Home WPA3 SAE-loop. Enterprise 802.1X/EAP, Mesh AMPE, or FILS, aka an "SSID Confusion" issue. This occurs because the SSID is not always used to derive the pairwise master key or session keys, and because there is not a protected exchange of an SSID during a 4-way handshake.

Related CVEs

Key Information

GHSA ID
GHSA-mh3c-527f-cwqv
Published
May 17, 2024 9:31 PM
Last Modified
August 29, 2024 9:31 PM
CVSS Score
7.5 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: July 28, 2025 6:37 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.