← Back

Ui

ui

118 CVEs • 310 products

Products (310)

Click to collapse
Toggle
Unifi Protect
unifi_protect
Er X Firmware
er-x_firmware
Unifi Video
unifi_video
Airos
airos
Desktop
desktop
Edgeswitch X
edgeswitch_x
Edgeos
edgeos
Er 4 Firmware
er-4_firmware
Aircam
aircam
Aircam Dome
aircam_dome
Aircam Mini
aircam_mini
Edgeswitch
edgeswitch
Ucrm
ucrm
Af5x Firmware
af5x_firmware
Af5 Firmware
af5_firmware
Unifi Firmware
unifi_firmware
Ep R6 Firmware
ep-r6_firmware
Er 8 Firmware
er-8_firmware
Ep R8 Firmware
ep-r8_firmware
Mfi Controller
mfi_controller
Cloud Key Gen2
cloud_key_gen2
Unifi Talk
unifi_talk
Af 2x Firmware
af-2x_firmware

CVEs (118)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Ui
1Unifi Network Application
Jul 6, 2026
Jul 2, 2026
N/A· v4
7.5 HIGH· v3
N/A· v2
A malicious actor with access to the network and under certain conditions could exploit an Incorrect Authorization vulnerability found in UniFi Network Application to persist privileges within UniFi Network Application a...Show more
A malicious actor with access to the network and under certain conditions could exploit an Incorrect Authorization vulnerability found in UniFi Network Application to persist privileges within UniFi Network Application after such access had been removed.Show less
1Ui
1Unifi Protect
Jul 6, 2026
Jul 2, 2026
N/A· v4
8.8 HIGH· v3
N/A· v2
A malicious actor with access to the network and low privileges could exploit an authenticated SQL Injection vulnerability found in UniFi Protect Application to escalate privileges on the host device.
1Ui
1Unifi Talk Application
Jul 9, 2026
Jul 2, 2026
N/A· v4
8.1 HIGH· v3
N/A· v2
A malicious actor with access to the network and low privileges could exploit an Improper Access Control vulnerability found in UniFi Talk Application to escalate privileges within the UniFi Talk Application.
1Ui
1Unifi Network Application
Jul 6, 2026
Jul 2, 2026
N/A· v4
8.3 HIGH· v3
N/A· v2
A malicious actor with access to the network,low privileges and under certain conditions could exploit an Improper Access Control vulnerability found in UniFi Network Application to escalate privileges within the UniFi N...Show more
A malicious actor with access to the network,low privileges and under certain conditions could exploit an Improper Access Control vulnerability found in UniFi Network Application to escalate privileges within the UniFi Network Application.Show less
1Ui
1Unifi Access Application
Jul 9, 2026
Jul 2, 2026
N/A· v4
8.6 HIGH· v3
N/A· v2
A malicious actor with access to the network could exploit a Path Traversal vulnerability found in UniFi Access Application to access files on the host device.
1Ui
1Unifi Connect
Jul 9, 2026
Jul 2, 2026
N/A· v4
9.8 CRITICAL· v3
N/A· v2
A malicious actor with access to the network and under certain network configurations could exploit an Improper Access Control vulnerability found in certain devices running UniFi OS to make unauthorized changes to such...Show more
A malicious actor with access to the network and under certain network configurations could exploit an Improper Access Control vulnerability found in certain devices running UniFi OS to make unauthorized changes to such UniFi OS devices.Show less
1Ui
1Unifi Protect
Jul 7, 2026
Jul 2, 2026
N/A· v4
9.9 CRITICAL· v3
N/A· v2
A malicious actor with access to the network and low privileges could exploit a Server-Side Request Forgery (SSRF) in UniFi Protect Application to escalate privileges on the host device.
1Ui
1Unifi Network Application
Jul 6, 2026
Jul 2, 2026
N/A· v4
8.8 HIGH· v3
N/A· v2
A malicious actor with access to the network and low privileges could exploit an Improper Access Control vulnerability found in UniFi Network Application to escalate privileges within the UniFi Network Application.
1Ui
1Unifi Talk Application
Jul 9, 2026
Jul 2, 2026
N/A· v4
7.5 HIGH· v3
N/A· v2
A malicious actor with access to the network could exploit a Server-Side Request Forgery (SSRF) vulnerability found in UniFi Talk Application to execute a Denial of Service (DoS) attack and bypass authentication in certa...Show more
A malicious actor with access to the network could exploit a Server-Side Request Forgery (SSRF) vulnerability found in UniFi Talk Application to execute a Denial of Service (DoS) attack and bypass authentication in certain UniFi Talk API endpoints.Show less
1Ui
19Enterprise Network Video Recorder Core Firmware
Enterprise Network Video Recorder FirmwareUnifi Cloud Gateway Fiber Firmware+16 more
Jul 10, 2026
Jul 2, 2026
N/A· v4
8.8 HIGH· v3
N/A· v2
A malicious actor with access to the network and low privileges and under certain conditions could exploit an Improper Access Control vulnerability found in UniFi OS with UniFi Protect Application to escalate privileges...Show more
A malicious actor with access to the network and low privileges and under certain conditions could exploit an Improper Access Control vulnerability found in UniFi OS with UniFi Protect Application to escalate privileges on the host device.Show less
1Ui
1Protect Floodlight Firmware
Jul 9, 2026
Jul 2, 2026
N/A· v4
7.5 HIGH· v3
N/A· v2
A malicious actor with access to the network could exploit a Path Traversal vulnerability found in UniFi Protect Floodlight devices to access files on the UniFi Protect Floodlight.
1Ui
30Enterprise Firewall Core Firmware
Enterprise Fortress Gateway FirmwareEnterprise Network Video Recorder Core Firmware+27 more
Jul 9, 2026
Jul 2, 2026
N/A· v4
6.1 MEDIUM· v3
N/A· v2
A malicious actor who lures an authenticated user to a malicious page could exploit a Cross-Origin Resource Sharing (CORS) misconfiguration found in UniFi OS to trigger actions in UniFi OS using that user's session.
1Ui
1Unifi Protect
Jul 7, 2026
Jul 2, 2026
N/A· v4
8.1 HIGH· v3
N/A· v2
A malicious actor with access to the network and under certain conditions could exploit an Improper Initialization vulnerability found in UniFi Protect Application to bypass authentication in UniFi Protect Cameras.
1Ui
1Unifi Protect
Jul 7, 2026
Jul 2, 2026
N/A· v4
9.8 CRITICAL· v3
N/A· v2
A malicious actor with access to the network could exploit an Improper Access Control vulnerability found in UniFi Protect Application to bypass authentication for data streaming.
1Ui
1Unifi Protect
Jul 6, 2026
Jul 2, 2026
N/A· v4
8.6 HIGH· v3
N/A· v2
A malicious actor with access to the network could exploit an Improper Access Control vulnerability found in UniFi Protect Application to bypass authentication in certain UniFi Protect Application API endpoints.
1Ui
1Unifi Network Application
Jul 6, 2026
Jul 2, 2026
N/A· v4
8.7 HIGH· v3
N/A· v2
A malicious actor with access to the network and high privileges could exploit a Path Traversal vulnerability found in self-hosted instances of UniFi Network Application to escalate write permission on the host device.
1Ui
1Unifi Network Application
Jul 2, 2026
Jul 2, 2026
N/A· v4
7.5 HIGH· v3
N/A· v2
A malicious actor with access to the network could exploit an Improper Input Validation vulnerability found in UniFi Network Application to execute a Denial of Service (DoS) attack on the application.
1Ui
32Enterprise Firewall Core Firmware
Enterprise Fortress Gateway FirmwareEnterprise Network Video Recorder Core Firmware+29 more
Jul 10, 2026
Jul 2, 2026
N/A· v4
8.8 HIGH· v3
N/A· v2
A malicious actor with access to the network and low privileges could exploit a series of authenticated SQL Injection vulnerabilities found in UniFi OS to escalate privileges within such UniFi OS devices or instances.
1Ui
32Enterprise Firewall Core Firmware
Enterprise Fortress Gateway FirmwareEnterprise Network Video Recorder Core Firmware+29 more
Jul 10, 2026
Jul 2, 2026
N/A· v4
8.6 HIGH· v3
N/A· v2
A malicious actor with access to the network could exploit a Path Traversal vulnerability found in certain devices running UniFi OS to bypass authentication of such UniFi OS devices or instances.
1Ui
32Enterprise Firewall Core Firmware
Enterprise Fortress Gateway FirmwareEnterprise Network Video Recorder Core Firmware+29 more
Jul 10, 2026
Jul 2, 2026
N/A· v4
8.8 HIGH· v3
N/A· v2
A malicious actor with access to the network and low privileges could exploit an Improper Input Validation vulnerability found in UniFi OS to execute a Command Injection on the host device.