{"api_version":"1","generated_at":"2026-07-23T09:47:56+00:00","cve":"CVE-2019-5426","urls":{"html":"https://cve.report/CVE-2019-5426","api":"https://cve.report/api/cve/CVE-2019-5426.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2019-5426","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2019-5426"},"summary":{"title":"CVE-2019-5426","description":"In Ubiquiti Networks EdgeSwitch X v1.1.0 and prior, an unauthenticated user can use the \"local port forwarding\" and \"dynamic port forwarding\" (SOCKS proxy) functionalities. Remote attackers without credentials can exploit this bug to access local services or forward traffic through the device if SSH is enabled in the system settings.","state":"PUBLIC","assigner":"support@hackerone.com","published_at":"2019-04-10 18:29:00","updated_at":"2020-10-16 19:28:00"},"problem_types":["CWE-287"],"metrics":[],"references":[{"url":"https://community.ubnt.com/t5/EdgeMAX-Updates-Blog/EdgeMAX-EdgeSwitch-X-software-release-v1-1-1/ba-p/2731137","name":"https://community.ubnt.com/t5/EdgeMAX-Updates-Blog/EdgeMAX-EdgeSwitch-X-software-release-v1-1-1/ba-p/2731137","refsource":"CONFIRM","tags":["Patch","Vendor Advisory"],"title":"EdgeMAX EdgeSwitch X software release v1.1.1 - Ubiquiti Networks Community","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://hackerone.com/reports/512958","name":"https://hackerone.com/reports/512958","refsource":"MISC","tags":["Third Party Advisory"],"title":"HackerOne","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2019-5426","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2019-5426","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2019","cve_id":"5426","vulnerable":"1","versionEndIncluding":"1.1.0","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"ui","cpe5":"edgeswitch_x","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"data_type":"CVE","data_format":"MITRE","data_version":"4.0","CVE_data_meta":{"ID":"CVE-2019-5426","ASSIGNER":"support@hackerone.com","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"vendor_name":"Ubiquiti Networks","product":{"product_data":[{"product_name":"EdgeMAX","version":{"version_data":[{"version_value":"EdgeSwitch X prior to v1.1.1"}]}}]}}]}},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"Improper Authentication - Generic (CWE-287)"}]}]},"references":{"reference_data":[{"refsource":"MISC","name":"https://hackerone.com/reports/512958","url":"https://hackerone.com/reports/512958"},{"refsource":"CONFIRM","name":"https://community.ubnt.com/t5/EdgeMAX-Updates-Blog/EdgeMAX-EdgeSwitch-X-software-release-v1-1-1/ba-p/2731137","url":"https://community.ubnt.com/t5/EdgeMAX-Updates-Blog/EdgeMAX-EdgeSwitch-X-software-release-v1-1-1/ba-p/2731137"}]},"description":{"description_data":[{"lang":"eng","value":"In Ubiquiti Networks EdgeSwitch X v1.1.0 and prior, an unauthenticated user can use the \"local port forwarding\" and \"dynamic port forwarding\" (SOCKS proxy) functionalities. Remote attackers without credentials can exploit this bug to access local services or forward traffic through the device if SSH is enabled in the system settings."}]}},"nvd":{"publishedDate":"2019-04-10 18:29:00","lastModifiedDate":"2020-10-16 19:28:00","problem_types":["CWE-287"],"metrics":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N","attackVector":"NETWORK","attackComplexity":"HIGH","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"LOW","integrityImpact":"LOW","availabilityImpact":"NONE","baseScore":4.8,"baseSeverity":"MEDIUM"},"exploitabilityScore":2.2,"impactScore":2.5},"baseMetricV2":{"cvssV2":{"version":"2.0","vectorString":"AV:N/AC:M/Au:N/C:P/I:P/A:N","accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"NONE","baseScore":5.8},"severity":"MEDIUM","exploitabilityScore":8.6,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}},"configurations":{"CVE_data_version":"4.0","nodes":[{"operator":"OR","children":[],"cpe_match":[{"vulnerable":true,"cpe23Uri":"cpe:2.3:a:ui:edgeswitch_x:*:*:*:*:*:*:*:*","versionEndIncluding":"1.1.0","cpe_name":[]}]}]}},"legacy_mitre":{"record":{"CveYear":"2019","CveId":"5426","Ordinal":"143046","Title":"CVE-2019-5426","CVE":"CVE-2019-5426","Year":"2019"},"notes":[{"CveYear":"2019","CveId":"5426","Ordinal":"1","NoteData":"In Ubiquiti Networks EdgeSwitch X v1.1.0 and prior, an unauthenticated user can use the \"local port forwarding\" and \"dynamic port forwarding\" (SOCKS proxy) functionalities. Remote attackers without credentials can exploit this bug to access local services or forward traffic through the device if SSH is enabled in the system settings.","Type":"Description","Title":null},{"CveYear":"2019","CveId":"5426","Ordinal":"2","NoteData":"2019-04-10","Type":"Other","Title":"Published"},{"CveYear":"2019","CveId":"5426","Ordinal":"3","NoteData":"2019-04-10","Type":"Other","Title":"Modified"}]}}}