Vulnerabilities > Ucopia > Ucopia Wireless Appliance

DATE CVE VULNERABILITY TITLE RISK
2021-02-02 CVE-2020-25036 OS Command Injection vulnerability in Ucopia Wireless Appliance 6.0.5
UCOPIA Wi-Fi appliances 6.0.5 allow authenticated remote attackers to escape the restricted administration shell CLI, and access a shell with admin user rights, via an unprotected less command.
network
low complexity
ucopia CWE-78
8.8
2021-02-02 CVE-2020-25037 Unrestricted Upload of File with Dangerous Type vulnerability in Ucopia Wireless Appliance 6.0.5
UCOPIA Wi-Fi appliances 6.0.5 allow arbitrary code execution with admin user privileges via an escape from a restricted command.
local
low complexity
ucopia CWE-434
8.2
2017-10-03 CVE-2017-11322 OS Command Injection vulnerability in Ucopia Wireless Appliance
The chroothole_client executable in UCOPIA Wireless Appliance before 5.1.8 allows remote attackers to gain root privileges via a dollar sign ($) metacharacter in the argument to chroothole_client.
local
low complexity
ucopia CWE-78
8.2