PT-2025-29704 · Unknown · Access Point

Cao Yitian

·

Published

2025-07-16

·

Updated

2025-07-21

·

CVE-2025-52689

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Cisco Wireless Access Point (affected versions not specified)
Description Successful exploitation of the vulnerability could allow an unauthenticated attacker to obtain a valid session ID with administrator privileges by spoofing the login request, potentially allowing the attacker to modify the behaviour of the access point.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Session Fixation

Weakness Enumeration

Related Identifiers

CVE-2025-52689

Affected Products

Access Point