CVE-2026-55117
- EPSS 0.38%
- Veröffentlicht 02.07.2026 14:50:48
- Zuletzt bearbeitet 17.08.2026 15:12:59
A malicious actor with access to the network could exploit a Path Traversal vulnerability found in UniFi Access Application to access files on the host device.
CVE-2026-50748
- EPSS 1.21%
- Veröffentlicht 02.07.2026 14:49:16
- Zuletzt bearbeitet 17.08.2026 15:12:09
A malicious actor with access to the network and low privileges could exploit an Improper Input Validation vulnerability found in UniFi Access Application to execute a Command Injection on the host device.
CVE-2026-54400
- EPSS 0.52%
- Veröffentlicht 02.07.2026 14:49:16
- Zuletzt bearbeitet 17.08.2026 15:12:27
A malicious actor with access to the network and high privileges could exploit an Improper Access Control vulnerability found in UniFi Access Application to escalate privileges on the host device.
- EPSS 40.97%
- Veröffentlicht 30.10.2025 23:30:28
- Zuletzt bearbeitet 12.11.2025 14:51:21
A malicious actor with access to the management network could exploit a misconfiguration in UniFi’s door access application, UniFi Access, that exposed a management API without proper authentication. This vulnerability was introduced in Version 3.3.2...