CVE-2012-2095: David Paleino Wicd
Medium severity, CVSS 6.9. EPSS: 0.8% chance of exploitation in the next 30 days.
The SetWiredProperty function in the D-Bus interface in WICD before 1.7.2 allows local users to write arbitrary configuration settings and gain privileges via a crafted property name in a dbus message.
Affected products
- David Paleino Wicd: up to and including 1.7.1; version 1.2.7 only; version 1.3.1 only; version 1.4.0 only; version 1.4.1 only; version 1.4.2 only; …
- Fedoraproject Fedora: version 15 only; version 16 only; version 17 only
Published 2014-04-07. Last modified 2026-06-16.