Vulnerabilities > UI > High
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2024-09-13 | CVE-2024-42025 | Command Injection vulnerability in UI Unifi Network Application A Command Injection vulnerability found in a Self-Hosted UniFi Network Servers (Linux) with UniFi Network Application (Version 8.3.32 and earlier) allows a malicious actor with unifi user shell access to escalate privileges to root on the host device. | 7.8 |
2023-07-18 | CVE-2023-31998 | Out-of-bounds Write vulnerability in UI Aircube Firmware and Edgemax Edgerouter Firmware A heap overflow vulnerability found in EdgeRouters and Aircubes allows a malicious actor to interrupt UPnP service to said devices. | 7.5 |
2023-04-28 | CVE-2023-2379 | Improper Resource Shutdown or Release vulnerability in UI Er-X-Sfp Firmware and Er-X Firmware A vulnerability classified as critical has been found in Ubiquiti EdgeRouter X up to 2.0.9-hotfix.6. | 7.5 |
2023-04-28 | CVE-2023-2376 | Command Injection vulnerability in UI Er-X-Sfp Firmware and Er-X Firmware A vulnerability was found in Ubiquiti EdgeRouter X up to 2.0.9-hotfix.6. | 8.8 |
2023-04-28 | CVE-2023-2377 | Command Injection vulnerability in UI Er-X-Sfp Firmware and Er-X Firmware A vulnerability was found in Ubiquiti EdgeRouter X up to 2.0.9-hotfix.6. | 8.8 |
2023-04-28 | CVE-2023-2378 | Command Injection vulnerability in UI Er-X-Sfp Firmware and Er-X Firmware A vulnerability was found in Ubiquiti EdgeRouter X up to 2.0.9-hotfix.6. | 8.8 |
2023-04-28 | CVE-2023-2374 | Command Injection vulnerability in UI Er-X-Sfp Firmware and Er-X Firmware A vulnerability has been found in Ubiquiti EdgeRouter X up to 2.0.9-hotfix.6 and classified as critical. | 8.8 |
2023-04-28 | CVE-2023-2375 | Command Injection vulnerability in UI Er-X-Sfp Firmware and Er-X Firmware A vulnerability was found in Ubiquiti EdgeRouter X up to 2.0.9-hotfix.6 and classified as critical. | 8.8 |
2023-04-28 | CVE-2023-2373 | Command Injection vulnerability in UI Edgemax Edgerouter Firmware 2.0.9 A vulnerability, which was classified as critical, was found in Ubiquiti EdgeRouter X up to 2.0.9-hotfix.6. | 8.8 |
2023-04-19 | CVE-2023-28122 | Unspecified vulnerability in UI Desktop 0.55.1.2/0.55.3.17/0.59.1.71 A local privilege escalation (LPE) vulnerability in UI Desktop for Windows (Version 0.59.1.71 and earlier) allows a malicious actor with local access to a Windows device running said application to submit arbitrary commands as SYSTEM.This vulnerability is fixed in Version 0.62.3 and later. | 7.8 |