VYPR

AC-WPS-11ac series

by Inaba

CVEs (5)

  • CVE-2025-27797CriApr 9, 2025
    risk 0.64cvss 9.8epss 0.02

    OS command injection vulnerability in the specific service exists in Wi-Fi AP UNIT 'AC-WPS-11ac series'. If exploited, an arbitrary OS command may be executed by a remote attacker who can log in to the product.

  • CVE-2025-25053HigApr 9, 2025
    risk 0.57cvss 8.8epss 0.01

    OS command injection vulnerability in the WEB UI (the setting page) exists in Wi-Fi AP UNIT 'AC-WPS-11ac series'. If exploited, an arbitrary OS command may be executed by a remote attacker who can log in to the product.

  • CVE-2025-25213MedApr 9, 2025
    risk 0.42cvss 6.5epss 0.00

    Improper restriction of rendered UI layers or frames issue exists in Wi-Fi AP UNIT 'AC-WPS-11ac series'. If a user views and clicks on the content on the malicious page while logged in, unintended operations may be performed.

  • CVE-2025-25056MedApr 9, 2025
    risk 0.28cvss 4.3epss 0.00

    Cross-site request forgery vulnerability exists in Wi-Fi AP UNIT 'AC-WPS-11ac series'. If a user views a malicious page while logged in, unintended operations may be performed.

  • CVE-2025-23407MedApr 9, 2025
    risk 0.28cvss 4.3epss 0.00

    Incorrect privilege assignment vulnerability in the WEB UI (the setting page) exists in Wi-Fi AP UNIT 'AC-WPS-11ac series'. If exploited, a remote attacker who can log in to the product may alter the settings without appropriate privileges.