A vulnerability found in UniFi Protect application V1.18.1 and earlier allows a malicious actor with a view-only role and network access to gain the same privileges as the owner of the UniFi Protect application. This vulnerability is fixed in UniFi Protect application V1.19.0 and later.
References
Link | Resource |
---|---|
https://community.ui.com/releases/Security-Advisory-Bulletin-019-019/90a00abe-d6b6-43c6-92d4-0a0342f1506f | Vendor Advisory |
Configurations
History
No history.
Information
Published : 2021-08-31 17:15
Updated : 2024-02-28 18:28
NVD link : CVE-2021-22944
Mitre link : CVE-2021-22944
CVE.ORG link : CVE-2021-22944
JSON object : View
Products Affected
ui
- unifi_protect
CWE