CVE-2025-27797: OS Command Injection
Published Apr 9, 2025
·Updated
OS command injection vulnerability in the specific service exists in Wi-Fi AP UNIT 'AC-WPS-11ac series'. If exploited, an arbitrary OS command may be executed by a remote attacker who can log in to the product.
Affected Software
1 affected component
Unknown AC-WPS-11ac series
Event History
Apr 9, 2025
CVE Published
via MITRE·09:03 AM
Data Sourced
via MITRE·09:03 AM
DescriptionSeverity
Data Sourced
via NVD·09:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-27797?
CVE-2025-27797 is classified as a high severity OS command injection vulnerability.
2
How do I fix CVE-2025-27797?
To fix CVE-2025-27797, ensure to apply the latest firmware updates provided by the manufacturer.
3
What software is affected by CVE-2025-27797?
The affected software for CVE-2025-27797 is the AC-WPS-11ac series Wi-Fi AP UNIT.
4
What can an attacker do with CVE-2025-27797?
An attacker exploiting CVE-2025-27797 can execute arbitrary OS commands remotely if they have login access.
5
Is CVE-2025-27797 easily exploitable?
Yes, CVE-2025-27797 can be easily exploited by remote attackers who can authenticate to the device.