A vulnerability found in UniFi Protect application V1.18.1 and earlier allows a malicious actor with a view-only role and network access to gain the same privileges as the owner of the UniFi Protect application. This vulnerability is fixed in UniFi Protect application V1.19.0 and later.
References
Link | Resource |
---|---|
https://community.ui.com/releases/Security-Advisory-Bulletin-019-019/90a00abe-d6b6-43c6-92d4-0a0342f1506f | Vendor Advisory |
Configurations
Information
Published : 2021-08-31 10:15
Updated : 2022-07-12 10:42
NVD link : CVE-2021-22944
Mitre link : CVE-2021-22944
JSON object : View
CWE
Products Affected
ui
- unifi_protect