UCHIDA YOKO wivia 5 OS Command Injection Vulnerability

Vulnerability

A command injection vulnerability has been identified in all versions of wivia 5, a product by UCHIDA YOKO CO., LTD. This vulnerability allows a logged-in administrative user to execute arbitrary operating system commands.

Impact

Exploitation of this vulnerability enables logged-in administrative users to execute arbitrary OS commands on the affected device.

Remediation

Users are advised to stop using wivia 5, as it is no longer supported. Consider migrating to the successor product, wivia R+. For more information, visit the UCHIDA YOKO support page.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
7.5
exploitability
4.8
remediation
0.0
relevance
0.0
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.