A malicious actor with access to the network and low privileges could exploit an Improper Input Validation vulnerability found in UniFi Access Application to execute a Command Injection on the host device.
Metrics
Affected Vendors & Products
References
History
Wed, 26 Aug 2026 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 26 Aug 2026 11:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Command Injection via Improper Input Validation in UniFi Access Application |
Wed, 26 Aug 2026 10:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A malicious actor with access to the network and low privileges could exploit an Improper Input Validation vulnerability found in UniFi Access Application to execute a Command Injection on the host device. | |
| Weaknesses | CWE-20 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Ubiquiti
Published: 2026-08-26T10:07:54.505Z
Updated: 2026-08-26T13:20:53.489Z
Reserved: 2026-08-20T20:32:37.793Z
Link: CVE-2026-77543
Updated: 2026-08-26T13:20:45.440Z
Status : Deferred
Published: 2026-08-26T10:16:42.283
Modified: 2026-08-28T18:49:15.340
Link: CVE-2026-77543
No data.