Successful exploitation of the vulnerability could allow an attacker to inject commands with root privileges on the access point, potentially leading to the loss of confidentiality, integrity, availability, and full control of the access point.
History

Wed, 16 Jul 2025 15:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'poc', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Wed, 16 Jul 2025 13:45:00 +0000

Type Values Removed Values Added
Metrics epss

{'score': 0.00067}


Wed, 16 Jul 2025 06:30:00 +0000

Type Values Removed Values Added
Description Successful exploitation of the vulnerability could allow an attacker to inject commands with root privileges on the access point, potentially leading to the loss of confidentiality, integrity, availability, and full control of the access point.
Title Command Injection Vulnerability in the OmniAccess Stellar Web Management Interface
Weaknesses CWE-77
References
Metrics cvssV3_1

{'score': 9.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: CSA

Published: 2025-07-16T06:23:53.933Z

Updated: 2025-07-16T14:41:04.579Z

Reserved: 2025-06-19T06:04:41.986Z

Link: CVE-2025-52688

cve-icon Vulnrichment

Updated: 2025-07-16T14:37:11.820Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2025-07-16T07:15:23.007

Modified: 2025-07-16T15:15:31.340

Link: CVE-2025-52688

cve-icon Redhat

No data.