CVE-2015-9266

The web management interface of Ubiquiti airMAX, airFiber, airGateway and EdgeSwitch XP (formerly TOUGHSwitch) allows an unauthenticated attacker to upload and write arbitrary files using directory traversal techniques. An attacker can exploit this vulnerability to gain root privileges. This vulnerability is fixed in the following product versions (fixes released in July 2015, all prior versions are affected): airMAX AC 7.1.3; airMAX M (and airRouter) 5.6.2 XM/XW/TI, 5.5.11 XM/TI, and 5.5.10u2 XW; airGateway 1.1.5; airFiber AF24/AF24HD 2.2.1, AF5x 3.0.2.1, and AF5 2.2.1; airOS 4 XS2/XS5 4.0.4; and EdgeSwitch XP (formerly TOUGHSwitch) 1.3.2.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:ui:airmax_ac_firmware:7.1.3:*:*:*:*:*:*:*
cpe:2.3:h:ui:airmax_ac:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:ui:airmax_m_xm_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ui:airmax_m_xm:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:ui:airmax_m_xw_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ui:airmax_m_xw:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:ui:airmax_m_ti_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ui:airmax_m_ti:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:ui:airgateway_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ui:airgateway:-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
cpe:2.3:o:ui:airfiber_af24_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ui:airfiber_af24:-:*:*:*:*:*:*:*

Configuration 7 (hide)

AND
cpe:2.3:o:ui:airfiber_af24hd_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ui:airfiber_af24hd:-:*:*:*:*:*:*:*

Configuration 8 (hide)

AND
cpe:2.3:o:ui:af5x_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ui:af5x:-:*:*:*:*:*:*:*

Configuration 9 (hide)

AND
cpe:2.3:o:ui:af5_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ui:af5:-:*:*:*:*:*:*:*

Configuration 10 (hide)

AND
OR cpe:2.3:o:ubnt:airos_4_xs5:*:*:*:*:*:*:*:*
cpe:2.3:o:ubnt:airos_4_xs2:*:*:*:*:*:*:*:*
OR cpe:2.3:h:ui:airmax_m:-:*:*:*:*:*:*:*
cpe:2.3:h:ui:airmax_ac:-:*:*:*:*:*:*:*

Configuration 11 (hide)

AND
cpe:2.3:o:ubnt:edgeswitch_xp_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ui:edgeswitch_xp:-:*:*:*:*:*:*:*

Information

Published : 2018-09-05 13:29

Updated : 2021-08-12 09:43


NVD link : CVE-2015-9266

Mitre link : CVE-2015-9266


JSON object : View

CWE
CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

Advertisement

dedicated server usa

Products Affected

ui

  • airfiber_af24hd
  • airgateway
  • airgateway_firmware
  • af5_firmware
  • airmax_m
  • edgeswitch_xp
  • airmax_m_xw_firmware
  • af5
  • airfiber_af24_firmware
  • airfiber_af24hd_firmware
  • af5x
  • airmax_ac_firmware
  • airmax_m_ti
  • airmax_m_xw
  • af5x_firmware
  • airmax_m_ti_firmware
  • airfiber_af24
  • airmax_m_xm
  • airmax_ac
  • airmax_m_xm_firmware

ubnt

  • airos_4_xs2
  • edgeswitch_xp_firmware
  • airos_4_xs5