Vulnerabilidades em Ubiquiti Networks
7 resultadosAnálise Vexday
Ubiquiti Networks apresenta 7 vulnerabilidades catalogadas, nenhuma em exploração ativa (KEV) e sem críticas de CVSS elevado, indicando risco moderado e controlado. A fraqueza predominante é CWE-269 (controle inadequado de operações privilegiadas), típica de falhas de autorização. Sem divulgações recentes, o panorama sugere exposição estável e sem urgência de remediação imediata.
CVE-2019-5425—In Ubiquiti Networks EdgeSwitch X v1.1.0 and prior, an authenticated user can execute arbitrary shell commands over the SSH interface bypassEPSS 1.9%CVE-2019-5424—In Ubiquiti Networks EdgeSwitch X v1.1.0 and prior, a privileged user can execute arbitrary shell commands over the SSH CLI interface. This EPSS 1.9%CVE-2017-0934—Ubiquiti Networks EdgeOS version 1.9.1 and prior suffer from an Improper Privilege Management vulnerability due to the lack of protection ofEPSS 1.3%CVE-2017-0935—Ubiquiti Networks EdgeOS version 1.9.1.1 and prior suffer from an Improper Privilege Management vulnerability due to the lack of protection EPSS 1.3%CVE-2017-0932—Ubiquiti Networks EdgeOS version 1.9.1.1 and prior suffer from an Improper Privilege Management vulnerability due to the lack of validation EPSS 1.2%CVE-2019-5426—In Ubiquiti Networks EdgeSwitch X v1.1.0 and prior, an unauthenticated user can use the "local port forwarding" and "dynamic port forwardingEPSS 0.8%CVE-2017-0933—Ubiquiti Networks EdgeOS version 1.9.1 and prior suffer from a Cross-Site Request Forgery (CSRF) vulnerability. An attacker with access to aEPSS 0.5%