CVE-2016-7792

Ubiquiti Networks UniFi 5.2.7 does not restrict access to the database, which allows remote attackers to modify the database by directly connecting to it.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:ubiquiti_networks:unifi_ap_ac_lite_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ubiquiti_networks:unifi_ap_ac_lite:-:*:*:*:*:*:*:*

History

21 Nov 2024, 02:58

Type Values Removed Values Added
References () http://www.securityfocus.com/bid/93270 - () http://www.securityfocus.com/bid/93270 -
References () https://packetstormsecurity.com/files/138928/Ubiquiti-UniFi-AP-AC-Lite-5.2.7-Improper-Access-Control.html - Exploit, Third Party Advisory, VDB Entry () https://packetstormsecurity.com/files/138928/Ubiquiti-UniFi-AP-AC-Lite-5.2.7-Improper-Access-Control.html - Exploit, Third Party Advisory, VDB Entry

Information

Published : 2017-01-23 21:59

Updated : 2024-11-21 02:58


NVD link : CVE-2016-7792

Mitre link : CVE-2016-7792

CVE.ORG link : CVE-2016-7792


JSON object : View

Products Affected

ubiquiti_networks

  • unifi_ap_ac_lite
  • unifi_ap_ac_lite_firmware
CWE
CWE-284

Improper Access Control