Inaba manufactures wireless access point and network appliance products, with its exposure concentrated in the AC-WAPU 300 series and associated firmware. The recurring weakness classes—OS command injection, improper input validation, missing authentication for critical functions, and UI-layer framing issues—reflect the command-line configuration and web-management interfaces typical of network infrastructure. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Inaba over time
Signals from CVEs in this vendor scope (6 CVEs).
6 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-61976HIGH CHOCO TEI WATCHER mini (IB-MCT001) contains an issue with improper check for unusual or exceptional conditions. If a remote attacker sends a specially crafted request to the Video | Dec 16, 2025 | 7.5 | 24 | NO | NO |
CVE-2023-28392HIGH Wi-Fi AP UNIT AC-PD-WAPU v1.05_B04 and earlier, AC-PD-WAPUM v1.05_B04 and earlier, AC-PD-WAPU-P v1.05_B04P and earlier, AC-PD-WAPUM-P v1.05_B04P and earlier, AC-WAPU-300 v1.00_B07 | May 23, 2023 | 7.2 | 22 | NO | NO |
CVE-2025-59479MEDIUM CHOCO TEI WATCHER mini (IB-MCT001) contains an issue with improper restriction of rendered UI layers or frames. If a user clicks on content on a malicious web page while logged int | Dec 16, 2025 | 6.1 | 21 | NO | NO |
CVE-2023-31198HIGH OS command injection vulnerability exists in Wi-Fi AP UNIT allows. If this vulnerability is exploited, a remote authenticated attacker with an administrative privilege to execute a | Jun 13, 2023 | 7.2 | 21 | NO | NO |
CVE-2023-31196HIGH Missing authentication for critical function in Wi-Fi AP UNIT allows a remote unauthenticated attacker to obtain sensitive information of the affected products. Affected products a | Jun 13, 2023 | 7.5 | 21 | NO | NO |
CVE-2025-66357MEDIUM CHOCO TEI WATCHER mini (IB-MCT001) contains an issue with improper check for unusual or exceptional conditions. When the Video Download feature is in a specific communication state | Dec 16, 2025 | 5.3 | 19 | NO | NO |
Signals from CVEs in this vendor scope (6 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Inaba.
Media articles that mention a CVE ID that affects a product developed by Inaba — matched by CVE ID, not by vendor name.