peter bassill · operator
$ cve CVE-2025-52688 JSON

CVE-2025-52688

9.8
CRITICAL · CVSS 3.1 · EPSS 27.4% (pctl 98)

Patch early

EPSS 27.4% — above the 10% action threshold.

Description

Successful exploitation of the vulnerability could allow an attacker to inject commands with root privileges on the access point, potentially leading to the loss of confidentiality, integrity, availability, and full control of the access point.

Scoring

CVSS9.8 (CRITICAL, v3.1)
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS27.36% — more likely to be exploited than 98% of all CVEs
WeaknessCWE-77
On CISA KEVno
Public exploitnone known
Published2025-07-16
Last modified2026-06-17

References

→ the Explorer  ·  watch your stack  ·  NVD