Home
CRITICAL: 9.1 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:HDefault status
unaffected
Any version before 5.0.8
affected
Description
A malicious actor with access to the network and high privileges could exploit an Improper Input Validation vulnerability found in UniFi OS devices to execute a Command Injection.
Problem types
CWE-20 Improper Input Validation
Product status
Any version before 5.0.8
References
community.ui.com/...064/84811c09-4cf4-42ab-bd61-cc994445963b