Home

Description

Multiple Improper Input Validation vulnerabilities in UniFi Connect EV Station Lite may allow a Command Injection by a malicious actor with network access to the UniFi Connect EV Station Lite. Affected Products: UniFi Connect EV Station Lite (Version 1.5.1 and earlier) Mitigation: Update UniFi Connect EV Station Lite to Version 1.5.2 or later

PUBLISHED Reserved 2025-01-17 | Published 2025-08-21 | Updated 2025-08-22 | Assigner hackerone

Product status

Default status
unaffected

1.5.2 before 1.5.2
affected

References

community.ui.com/...052/ac1251ee-5bb5-4cdf-8a71-68acd1775bb6

cve.org (CVE-2025-24285)

nvd.nist.gov (CVE-2025-24285)

Download JSON