VendorsUcopiawireless_applianceall versions
Vulnerabilities

Ucopia Wireless Appliance

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

5CVEs
CVE-2022-44720
An issue was discovered in Weblib Ucopia before 6.0.13. OS Command Injection injection can occur, related to chroot.
Published 2023-06-29 · Modified
9.8EPSS 0.026
CVE-2018-15481
Improper input sanitization within the restricted administration shell on UCOPIA Wireless Appliance devices using firmware version 5.1.x before 5.1.13 allows authenticated remote attackers to escape the shell and escalate their privileges by adding a LocalCommand to the SSH configuration file in the user home folder.
Published 2018-08-21 · Modified
8.8EPSS 0.013
CVE-2022-44719
An issue was discovered in Weblib Ucopia before 6.0.13. The SSH Server has Insecure Permissions.
Published 2023-06-29 · Modified
7.5EPSS 0.007
CVE-2017-11321
The restricted shell interface in UCOPIA Wireless Appliance before 5.1.8 allows remote authenticated users to gain 'admin' privileges via shell metacharacters in the less command.
Published 2017-10-02 · Modified
7.21 PoCEPSS 0.083
CVE-2017-17743
Improper input sanitization within the restricted administration shell on UCOPIA Wireless Appliance devices before 4.4.20, 5.0.x before 5.0.19, and 5.1.x before 5.1.11 allows authenticated remote attackers to escape the shell and escalate their privileges by uploading a .bashrc file containing the /bin/sh string. In some situations, authentication can be achieved via the bhu85tgb default password for the admin account.
Published 2018-03-22 · Modified
6.7EPSS 0.011