CVE-2020-8170

Summary

CVECVE-2020-8170
StatePUBLIC
Assigner[email protected]
Source PriorityCVE Program / NVD first with legacy fallback
Published2020-05-26 16:15:00 UTC
Updated2020-05-28 20:03:00 UTC
DescriptionWe have recently released new version of AirMax AirOS firmware v6.3.0 for TI, XW and XM boards that fixes vulnerabilities found on AirMax AirOS v6.2.0 and prior TI, XW and XM boards, according to the description below:Multiple end-points with parameters vulnerable to reflected cross site scripting (XSS), allowing attackers to abuse the user' session information and/or account takeover of the admin user.Mitigation:Update to the latest AirMax AirOS firmware version available at the AirMax download page.

Risk And Classification

Problem Types: CWE-79

NVD Known Affected Configurations (CPE 2.3)

TypeVendorProductVersionUpdateEditionLanguage
Hardware Ui Ag-hp-2g16 - All All All
Hardware Ui Ag-hp-2g16 - All All All
Hardware Ui Ag-hp-2g20 - All All All
Hardware Ui Ag-hp-2g20 - All All All
Hardware Ui Ag-hp-5g23 - All All All
Hardware Ui Ag-hp-5g23 - All All All
Hardware Ui Ag-hp-5g27 - All All All
Hardware Ui Ag-hp-5g27 - All All All
Hardware Ui Airgrid M - All All All
Hardware Ui Airgrid M - All All All
Hardware Ui Airgrid M2 - All All All
Hardware Ui Airgrid M2 - All All All
Hardware Ui Airgrid M5 - All All All
Hardware Ui Airgrid M5 - All All All
Operating System Ui Airos All All All All
Hardware Ui Ar - All All All
Hardware Ui Ar - All All All
Hardware Ui Ar-hp - All All All
Hardware Ui Ar-hp - All All All
Hardware Ui Bm2-ti - All All All
Hardware Ui Bm2-ti - All All All
Hardware Ui Bm2hp - All All All
Hardware Ui Bm2hp - All All All
Hardware Ui Bm5-ti - All All All
Hardware Ui Bm5-ti - All All All
Hardware Ui Bm5hp - All All All
Hardware Ui Bm5hp - All All All
Hardware Ui Is-m5 - All All All
Hardware Ui Is-m5 - All All All
Hardware Ui Lbem5-23 - All All All
Hardware Ui Lbem5-23 - All All All
Hardware Ui Litestation M5 - All All All
Hardware Ui Litestation M5 - All All All
Hardware Ui Locom2 - All All All
Hardware Ui Locom2 - All All All
Hardware Ui Locom5 - All All All
Hardware Ui Locom5 - All All All
Hardware Ui Locom9 - All All All
Hardware Ui Locom9 - All All All
Hardware Ui M2 - All All All
Hardware Ui M2 - All All All
Hardware Ui M3 - All All All
Hardware Ui M3 - All All All
Hardware Ui M365 - All All All
Hardware Ui M365 - All All All
Hardware Ui M5 - All All All
Hardware Ui M5 - All All All
Hardware Ui M900 - All All All
Hardware Ui M900 - All All All
Hardware Ui Nb-2g18 - All All All
Hardware Ui Nb-2g18 - All All All
Hardware Ui Nb-5g22 - All All All
Hardware Ui Nb-5g22 - All All All
Hardware Ui Nb-5g25 - All All All
Hardware Ui Nb-5g25 - All All All
Hardware Ui Nbe-m2-13 - All All All
Hardware Ui Nbe-m2-13 - All All All
Hardware Ui Nbe-m5-16 - All All All
Hardware Ui Nbe-m5-16 - All All All
Hardware Ui Nbe-m5-19 - All All All
Hardware Ui Nbe-m5-19 - All All All
Hardware Ui Nbm3 - All All All
Hardware Ui Nbm3 - All All All
Hardware Ui Nbm365 - All All All
Hardware Ui Nbm365 - All All All
Hardware Ui Nbm9 - All All All
Hardware Ui Nbm9 - All All All
Hardware Ui Nsm2 - All All All
Hardware Ui Nsm2 - All All All
Hardware Ui Nsm3 - All All All
Hardware Ui Nsm3 - All All All
Hardware Ui Nsm365 - All All All
Hardware Ui Nsm365 - All All All
Hardware Ui Nsm5 - All All All
Hardware Ui Nsm5 - All All All
Hardware Ui Pbe-m2-400 - All All All
Hardware Ui Pbe-m2-400 - All All All
Hardware Ui Pbe-m5-300 - All All All
Hardware Ui Pbe-m5-300 - All All All
Hardware Ui Pbe-m5-300-iso - All All All
Hardware Ui Pbe-m5-300-iso - All All All
Hardware Ui Pbe-m5-400 - All All All
Hardware Ui Pbe-m5-400 - All All All
Hardware Ui Pbe-m5-400-iso - All All All
Hardware Ui Pbe-m5-400-iso - All All All
Hardware Ui Pbe-m5-620 - All All All
Hardware Ui Pbe-m5-620 - All All All
Hardware Ui Pbm10 - All All All
Hardware Ui Pbm10 - All All All
Hardware Ui Pbm365 - All All All
Hardware Ui Pbm365 - All All All
Hardware Ui Pbm5 - All All All
Hardware Ui Pbm5 - All All All
Hardware Ui Picom2hp - All All All
Hardware Ui Picom2hp - All All All
Hardware Ui Power Ap N - All All All
Hardware Ui Power Ap N - All All All
Hardware Ui Rm2-ti - All All All
Hardware Ui Rm2-ti - All All All
Hardware Ui Rm5-ti - All All All
Hardware Ui Rm5-ti - All All All

References

ReferenceSourceLinkTags
Ubiquiti - Downloads MISC www.ui.com Release Notes, Third Party Advisory
Security advisory bulletin 010 | Ubiquiti Community MISC community.ui.com Vendor Advisory
v6.3.0 | Ubiquiti Community MISC community.ui.com Vendor Advisory
CVE Program record CVE.ORG www.cve.org canonical
NVD vulnerability detail NVD nvd.nist.gov canonical, analysis
© CVE.report 2026 |

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

CVE.report and Source URL Uptime Status status.cve.report