CVE-2026-77536
28Vexday Risk Score
Sem sinal de exploração. Nenhum artefato público de exploração conhecido até agora.
ssvc Trackcvss 9.9epss 0.2%
probabilidade de exploração
0.2%top 86% das CVEs
exploração observada
nãonenhuma fonte reporta
A malicious actor with access to the network and low privileges could exploit an Improper Access Control vulnerability found in certain devices running UniFi OS to escalate privileges within such UniFi OS devices or instances.
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Produtos afetados
Ubiquiti Inc · Cloud GatewaysUbiquiti Inc · Cloud KeysUbiquiti Inc · Dream MachinesUbiquiti Inc · Dream RoutersUbiquiti Inc · Dream WallUbiquiti Inc · Enterprise Firewall CoreUbiquiti Inc · Enterprise Fortress GatewayUbiquiti Inc · Enterprise Network Attached StorageUbiquiti Inc · Enterprise Network Video RecordersUbiquiti Inc · Express 7Ubiquiti Inc · Network Attached StorageUbiquiti Inc · Network Video RecordersUbiquiti Inc · UniFi OS Server