Vulnerabilities (CVE)

Filtered by vendor Uchida Subscribe
Filtered by product Wivia 5
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-41385 1 Uchida 2 Wivia 5, Wivia 5 Firmware 2025-06-04 N/A 7.2 HIGH
An OS Command Injection issue exists in wivia 5 all versions. If this vulnerability is exploited, an arbitrary OS command may be executed by a logged-in administrative user.
CVE-2025-41406 1 Uchida 2 Wivia 5, Wivia 5 Firmware 2025-06-04 N/A 6.1 MEDIUM
Cross-site scripting vulnerability exists in wivia 5 all versions. If exploited, when a user connects to the affected device with a specific operation, an arbitrary script may be executed on the web browser of the moderator user.
CVE-2025-47697 1 Uchida 2 Wivia 5, Wivia 5 Firmware 2025-06-04 N/A 7.5 HIGH
Client-side enforcement of server-side security issue exists in wivia 5 all versions. If exploited, an unauthenticated attacker may bypass authentication and operate the affected device as the moderator user.