NetworkManager Certificate Pinning Flaw Affecting 802.11X Authentication
CVE-2006-7246
6.8MEDIUM
What is CVE-2006-7246?
NetworkManager versions 0.9.x exhibit a vulnerability in how they handle certificate pinning during 802.11X authentication. This flaw allows the software not to properly associate the certificate's subject with the ESSID, potentially exposing the network to unauthorized access. Attackers can exploit this weakness to present illegitimate certificates, allowing them to impersonate trusted entities on the network, which could lead to man-in-the-middle attacks or unauthorized data interception.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
References
CVSS V3.1
Score:
6.8
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Adjacent Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved