CVE Vulnerabilities

CVE-2021-22944

Published: Aug 31, 2021 | Modified: Jul 12, 2022
CVSS 3.x
8
HIGH
Source:
NVD
CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
7.7 HIGH
AV:A/AC:L/Au:S/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

A vulnerability found in UniFi Protect application V1.18.1 and earlier allows a malicious actor with a view-only role and network access to gain the same privileges as the owner of the UniFi Protect application. This vulnerability is fixed in UniFi Protect application V1.19.0 and later.

Affected Software

Name Vendor Start Version End Version
Unifi_protect Ui * 1.19.0 (excluding)

References