UI
UI Er-x Firmware: vulnerabilities and CVEs
UI Er-x Firmware has 8 published vulnerabilities, 0 of them in the last 12 months. 0 are rated critical and 0 are listed by CISA as actively exploited.
CVEs8
Last 12 months0
Critical0
Actively exploited0
All vulnerabilities in the catalogue →⭐ Follow this technology
Latest vulnerabilities
| CVE | Severity | EPSS | Active exploitation | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-2379 | High (7.5) | 1.3% | — | Apr 28, 2023 | A vulnerability classified as critical has been found in Ubiquiti EdgeRouter X up to 2.0.9-hotfix.6. This affects an unknown part of the component Web Service. The manipulation leads to denial of service. It is possible… |
| CVE-2023-2378 | High (7.3) | 7.6% | — | Apr 28, 2023 | A flaw has been found in Ubiquiti EdgeRouter X up to 2.0.9-hotfix.6. This affects an unknown function of the component Web Management Interface. This manipulation of the argument suffix-rate-up causes command injection.… |
| CVE-2023-2377 | High (7.3) | 7.6% | — | Apr 28, 2023 | A vulnerability was detected in Ubiquiti EdgeRouter X up to 2.0.9-hotfix.6. The impacted element is an unknown function of the component Web Management Interface. The manipulation of the argument Name results in command… |
| CVE-2023-2376 | High (7.3) | 7.6% | — | Apr 28, 2023 | A security vulnerability has been detected in Ubiquiti EdgeRouter X up to 2.0.9-hotfix.6. The affected element is an unknown function of the component Web Management Interface. The manipulation of the argument dpi leads… |
| CVE-2023-2375 | High (7.3) | 9.3% | — | Apr 28, 2023 | A weakness has been identified in Ubiquiti EdgeRouter X up to 2.0.9-hotfix.6. Impacted is an unknown function of the component Web Management Interface. Executing a manipulation of the argument src can lead to command… |
| CVE-2023-2374 | High (7.3) | 6.9% | — | Apr 28, 2023 | A security flaw has been discovered in Ubiquiti EdgeRouter X up to 2.0.9-hotfix.6. This issue affects some unknown processing of the component Web Management Interface. Performing a manipulation of the argument ecn-down… |
| CVE-2023-23912 | High (8.8) | 0.96% | — | Feb 9, 2023 | A vulnerability, found in EdgeRouters Version 2.0.9-hotfix.5 and earlier and UniFi Security Gateways (USG) Version 4.4.56 and earlier with their DHCPv6 prefix delegation set to dhcpv6-stateless or dhcpv6-stateful,… |
| CVE-2019-16889 | High (7.5) | 5.1% | — | Sep 25, 2019 | Ubiquiti EdgeMAX devices before 2.0.3 allow remote attackers to cause a denial of service (disk consumption) because *.cache files in /var/run/beaker/container_file/ are created when providing a valid length payload of… |
Other products by UI
Unifi Protect · 21Unifi Network Application · 15Unifi OS · 12Unifi Dream Machine PRO Firmware · 11Unifi OS Server · 11Unifi Dream Machine Special Edition Firmware · 10Unifi Cloud Gateway Fiber Firmware · 10Unifi Dream Router 7 Firmware · 10Unifi Cloud Gateway Industrial Firmware · 10Enterprise Network Video Recorder Firmware · 10Enterprise Network Video Recorder Core Firmware · 10Unifi Cloudkey Firmware · 10