VYPR

IPM

by Slican

CVEs (1)

  • CVE-2025-14577Feb 24, 2026
    risk 0.00cvss epss 0.00

    Slican NCP/IPL/IPM/IPU devices are vulnerable to PHP Function Injection. An unauthenticated remote attacker is able to execute arbitrary PHP commands by sending specially crafted requests to /webcti/session_ajax.php endpoint. This issue was fixed in version 1.24.0190 (Slican…