UCHIDA YOKO wivia 5 OS Command Injection Vulnerability
Vulnerability
A command injection vulnerability has been identified in all versions of wivia 5, a product by UCHIDA YOKO CO., LTD. This vulnerability allows a logged-in administrative user to execute arbitrary operating system commands.
Impact
Exploitation of this vulnerability enables logged-in administrative users to execute arbitrary OS commands on the affected device.
Remediation
Users are advised to stop using wivia 5, as it is no longer supported. Consider migrating to the successor product, wivia R+. For more information, visit the UCHIDA YOKO support page.
Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM
Vulnerability Rating
Custom Algorithm
spread
0.0impact
7.5exploitability
4.8remediation
0.0relevance
0.0threat
0.0urgency
2.9incentive
1.7Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
