VDB
CVE-2025-9994
CVE-2025-9994
PUBLISHED
CVSS 9.800000190734863 CRITICAL
The Amp’ed RF BT-AP 111 Bluetooth access point's HTTP admin interface does not have an authentication feature, allowing unauthorized access to anyone with network access.
EPSS 0.09% · 25.2th percentile
Risk Scores
CVSS 3.1
9.800000190734863
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
0.09%
25.2th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Amped RF | BT-AP 111 | * |
Timeline
- Sep 9, 2025 CVE Published
- Sep 9, 2025 PoC Published
- Sep 10, 2025 EPSS Score
- Sep 17, 2025 EPSS Score
- Sep 25, 2025 EPSS Score
- Oct 2, 2025 EPSS Score
- Oct 9, 2025 EPSS Score
- Oct 17, 2025 EPSS Score
- Oct 24, 2025 EPSS Score
- Oct 31, 2025 EPSS Score
- Nov 3, 2025 CVE Updated
- Nov 7, 2025 EPSS Score