← back
CVE-2021-22957

CVE-2021-22957

EPSS 0.9%CWE-16
A Cross-Origin Resource Sharing (CORS) vulnerability found in UniFi Protect application Version 1.19.2 and earlier allows a malicious actor who has convinced a privileged user to access a URL with malicious code to take over said user’s account.This vulnerability is fixed in UniFi Protect application Version 1.20.0 and later.

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →