Ubiquiti Networks UniFi 5.2.7 does not restrict access to the database, which allows remote attackers to modify the database by directly connecting to it.
References
Link | Resource |
---|---|
http://www.securityfocus.com/bid/93270 | |
https://packetstormsecurity.com/files/138928/Ubiquiti-UniFi-AP-AC-Lite-5.2.7-Improper-Access-Control.html | Exploit Third Party Advisory VDB Entry |
http://www.securityfocus.com/bid/93270 | |
https://packetstormsecurity.com/files/138928/Ubiquiti-UniFi-AP-AC-Lite-5.2.7-Improper-Access-Control.html | Exploit Third Party Advisory VDB Entry |
Configurations
Configuration 1 (hide)
AND |
|
History
21 Nov 2024, 02:58
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.securityfocus.com/bid/93270 - | |
References | () https://packetstormsecurity.com/files/138928/Ubiquiti-UniFi-AP-AC-Lite-5.2.7-Improper-Access-Control.html - Exploit, Third Party Advisory, VDB Entry |
Information
Published : 2017-01-23 21:59
Updated : 2024-11-21 02:58
NVD link : CVE-2016-7792
Mitre link : CVE-2016-7792
CVE.ORG link : CVE-2016-7792
JSON object : View
Products Affected
ubiquiti_networks
- unifi_ap_ac_lite
- unifi_ap_ac_lite_firmware
CWE
CWE-284
Improper Access Control