Known Vulnerabilities for products from Ui

Listed below are 20 of the newest known vulnerabilities associated with the vendor "Ui".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Additional devices specifications by Ui can be found at device.report : Ui

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2023-41721 json Instances of UniFi Network Application that (i) are run on a UniFi Gateway Console, and (ii) are versions 7.5.176. and earlie... 5.3 - MEDIUM 2023-10-25 2023-10-31
CVE-2023-38034 json A command injection vulnerability in the DHCP Client function of all UniFi Access Points and Switches, excluding the Switch F... 9.8 - CRITICAL 2023-08-10 2023-08-17
CVE-2023-35085 json An integer overflow vulnerability in all UniFi Access Points and Switches, excluding the Switch Flex Mini, with SNMP Monitori... 9.8 - CRITICAL 2023-08-10 2023-08-17
CVE-2023-32000 json A Cross-Site Scripting (XSS) vulnerability found in UniFi Network (Version 7.3.83 and earlier) allows a malicious actor with ... 4.8 - MEDIUM 2023-07-08 2023-07-13
CVE-2023-31998 json A heap overflow vulnerability found in EdgeRouters and Aircubes allows a malicious actor to interrupt UPnP service to said de... 7.5 - HIGH 2023-07-18 2023-07-27
CVE-2023-31997 json UniFi OS 3.1 introduces a misconfiguration on consoles running UniFi Network that allows users on a local network to access M... 9 - CRITICAL 2023-07-01 2023-07-11
CVE-2023-28365 json A backup file vulnerability found in UniFi applications (Version 7.3.83 and earlier) running on Linux operating systems allow... 9.1 - CRITICAL 2023-07-01 2023-07-10
CVE-2023-28124 json Improper usage of symmetric encryption in UI Desktop for Windows (Version 0.59.1.71 and earlier) could allow users with acces... 5.5 - MEDIUM 2023-04-19 2023-05-01
CVE-2023-28123 json A permission misconfiguration in UI Desktop for Windows (Version 0.59.1.71 and earlier) could allow an user to hijack VPN cre... 5.5 - MEDIUM 2023-04-19 2023-05-01
CVE-2023-28122 json A local privilege escalation (LPE) vulnerability in UI Desktop for Windows (Version 0.59.1.71 and earlier) allows a malicious... 7.8 - HIGH 2023-04-19 2023-05-01
CVE-2023-24104 json Ubiquiti Networks UniFi Dream Machine Pro v7.2.95 allows attackers to bypass domain restrictions via crafted packets. 9.8 - CRITICAL 2023-02-23 2023-03-06
CVE-2023-23912 json A vulnerability, found in EdgeRouters Version 2.0.9-hotfix.5 and earlier and UniFi Security Gateways (USG) Version 4.4.56 and... 8.8 - HIGH 2023-02-09 2023-02-17
CVE-2023-23119 json The use of the cyclic redundancy check (CRC) algorithm for integrity check during firmware update makes Ubiquiti airFiber AF2... 5.9 - MEDIUM 2023-02-02 2023-02-10
CVE-2023-2379 json A vulnerability classified as critical has been found in Ubiquiti EdgeRouter X up to 2.0.9-hotfix.6. This affects an unknown ... 7.5 - HIGH 2023-04-28 2023-11-07
CVE-2023-2378 json A vulnerability was found in Ubiquiti EdgeRouter X up to 2.0.9-hotfix.6. It has been rated as critical. Affected by this issu... 8.8 - HIGH 2023-04-28 2023-11-07
CVE-2023-2377 json A vulnerability was found in Ubiquiti EdgeRouter X up to 2.0.9-hotfix.6. It has been declared as critical. Affected by this v... 8.8 - HIGH 2023-04-28 2023-11-07
CVE-2023-2376 json A vulnerability was found in Ubiquiti EdgeRouter X up to 2.0.9-hotfix.6. It has been classified as critical. Affected is an u... 8.8 - HIGH 2023-04-28 2023-11-07
CVE-2023-2375 json A vulnerability was found in Ubiquiti EdgeRouter X up to 2.0.9-hotfix.6 and classified as critical. This issue affects some u... 8.8 - HIGH 2023-04-28 2023-11-07
CVE-2023-2374 json A vulnerability has been found in Ubiquiti EdgeRouter X up to 2.0.9-hotfix.6 and classified as critical. This vulnerability a... 8.8 - HIGH 2023-04-28 2023-11-07
CVE-2023-2373 json A vulnerability, which was classified as critical, was found in Ubiquiti EdgeRouter X up to 2.0.9-hotfix.6. This affects an u... 8.8 - HIGH 2023-04-28 2023-11-07

Known software with vulnerabilities from Ui

Type Vendor Product Version
HardwareUiAg-hp-2g16-
HardwareUiAg-hp-2g20-
HardwareUiAg-hp-5g23-
HardwareUiAg-hp-5g27-
HardwareUiAircam-
HardwareUiAircam Dome-
Operating
System
UiAircam Firmware3.1.4
HardwareUiAircam Mini-
HardwareUiAirgrid M-
HardwareUiAirgrid M2-
HardwareUiAirgrid M5-
Operating
System
UiAiros3.0
Operating
System
UiAirvision Firmware1.1.5
HardwareUiAr-
HardwareUiAr-hp-
HardwareUiBm2-ti-
HardwareUiBm2hp-
HardwareUiBm5-ti-
HardwareUiBm5hp-
HardwareUiEdgemax-