VYPR

Wi-Fi appliances

by Ucopia

CVEs (3)

  • CVE-2020-25036HigFeb 2, 2021
    risk 0.57cvss 8.8epss 0.02

    UCOPIA Wi-Fi appliances 6.0.5 allow authenticated remote attackers to escape the restricted administration shell CLI, and access a shell with admin user rights, via an unprotected less command.

  • CVE-2020-25037HigFeb 2, 2021
    risk 0.53cvss 8.2epss 0.01

    UCOPIA Wi-Fi appliances 6.0.5 allow arbitrary code execution with admin user privileges via an escape from a restricted command.

  • CVE-2020-25035MedFeb 2, 2021
    risk 0.44cvss 6.7epss 0.01

    UCOPIA Wi-Fi appliances 6.0.5 allow arbitrary code execution with root privileges using chroothole_client's PHP call, a related issue to CVE-2017-11322.