« Volver al listado

CVE-2025-52689

Estado: AplazadaCrítica (9.8)—

Successful exploitation of the vulnerability could allow an unauthenticated attacker to obtain a valid session ID with administrator privileges by spoofing the login request, potentially allowing the attacker to modify the behaviour of the access point.

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

🎯 Técnicas ATT&CK

Cómo se explota esta vulnerabilidad y qué consigue el atacante, en el lenguaje de MITRE ATT&CK.

AV:N/PR:N/UI:N indica explotación remota sin autenticación (T1190). La suplantación de sesión logra credenciales administrativas (T1078.001), gestión de cuentas privilegiadas (T1098.002) y modificación del comportamiento del punto de acceso (T1565.001).

Inferido por nuestro agente de análisis a partir de la descripción oficial, el vector CVSS y la CWE, y comprobado por un supervisor. Puede contener errores.

🛡️ Mitigaciones ATT&CK que cubren estas técnicas

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2025-52689",
  "cveTags": [],
  "metrics": {
    "ssvcV203": [
      {
        "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
        "ssvcData": {
          "id": "CVE-2025-52689",
          "role": "CISA Coordinator",
          "options": [
            {
              "exploitation": "poc"
            },
            {
              "automatable": "yes"
            },
            {
              "technicalImpact": "total"
            }
          ],
          "version": "2.0.3",
          "timestamp": "2025-07-16T14:35:50.269269Z"
        }
      }
    ],
    "cvssMetricV31": [
      {
        "type": "Secondary",
        "source": "5f57b9bf-260d-4433-bf07-b6a79e9bb7d4",
        "cvssData": {
          "scope": "UNCHANGED",
          "version": "3.1",
          "baseScore": 9.8,
          "attackVector": "NETWORK",
          "baseSeverity": "CRITICAL",
          "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
          "integrityImpact": "HIGH",
          "userInteraction": "NONE",
          "attackComplexity": "LOW",
          "availabilityImpact": "HIGH",
          "privilegesRequired": "NONE",
          "confidentialityImpact": "HIGH"
        },
        "impactScore": 5.9,
        "exploitabilityScore": 3.9
      }
    ]
  },
  "affected": [
    {
      "source": "5f57b9bf-260d-4433-bf07-b6a79e9bb7d4",
      "affectedData": [
        {
          "vendor": "Alcatel-Lucent",
          "product": "OmniAccess Stellar Products",
          "versions": [
            {
              "status": "affected",
              "version": "AP1100 AWOS versions 5.0.2 GA and earlier"
            },
            {
              "status": "affected",
              "version": "AP1200 AWOS versions 5.0.2 GA and earlier"
            },
            {
              "status": "affected",
              "version": "AP1300 AWOS versions 5.0.2 GA and earlier"
            },
            {
              "status": "affected",
              "version": "AP1400 AWOS versions 5.0.2 GA and earlier"
            },
            {
              "status": "affected",
              "version": "AP1500 AWOS versions 5.0.2 GA and earlier"
            }
          ],
          "defaultStatus": "unknown"
        }
      ]
    }
  ],
  "published": "2025-07-16T07:15:23.190",
  "references": [
    {
      "url": "https://blog.uhg.sg/article/24.html",
      "source": "5f57b9bf-260d-4433-bf07-b6a79e9bb7d4"
    },
    {
      "url": "https://www.al-enterprise.com/-/media/assets/internet/documents/sa-n0150-omniaccess-stellar-multiple-vulnerabilities.pdf",
      "source": "5f57b9bf-260d-4433-bf07-b6a79e9bb7d4"
    },
    {
      "url": "https://www.csa.gov.sg/alerts-and-advisories/alerts/al-2025-072/",
      "source": "5f57b9bf-260d-4433-bf07-b6a79e9bb7d4"
    },
    {
      "url": "https://github.com/UltimateHG/CVE-2025-52689-PoC",
      "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0"
    }
  ],
  "vulnStatus": "Deferred",
  "weaknesses": [
    {
      "type": "Secondary",
      "source": "5f57b9bf-260d-4433-bf07-b6a79e9bb7d4",
      "description": [
        {
          "lang": "en",
          "value": "CWE-384"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "Successful exploitation of the vulnerability could allow an unauthenticated attacker to obtain a valid session ID with administrator privileges by spoofing the login request, potentially allowing the attacker to modify the behaviour of the access point."
    },
    {
      "lang": "es",
      "value": "La explotación exitosa de esta vulnerabilidad podría permitir que un atacante no autenticado obtenga una ID de sesión válida con privilegios de administrador falsificando la solicitud de inicio de sesión, lo que potencialmente permitiría al atacante modificar el comportamiento del punto de acceso."
    }
  ],
  "lastModified": "2026-06-17T09:36:54.520",
  "sourceIdentifier": "5f57b9bf-260d-4433-bf07-b6a79e9bb7d4"
}