UI
UI Unifi Access: vulnerabilidades y CVE
UI Unifi Access tiene 8 vulnerabilidades publicadas, 8 de ellas en los últimos 12 meses. 7 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE8
Últimos 12 meses8
Críticas7
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-77553 | Crítica (9.9) | 0.42% | — | 26 ago 2026 | A malicious actor with access to the network and low privileges could exploit an Improper Access Control vulnerability found in UniFi Access Application to escalate privileges on the host device. |
| CVE-2026-77547 | Crítica (9.9) | 1.4% | — | 26 ago 2026 | A malicious actor with access to the network and low privileges could exploit an Improper Input Validation vulnerability found in UniFi Access Application to execute a Command Injection on the host device. |
| CVE-2026-77546 | Crítica (9.9) | 1.4% | — | 26 ago 2026 | A malicious actor with access to the network and low privileges could exploit an Improper Input Validation vulnerability found in UniFi Access Application to execute a Command Injection on the host device. |
| CVE-2026-77543 | Crítica (9.9) | 1.4% | — | 26 ago 2026 | A malicious actor with access to the network and low privileges could exploit an Improper Input Validation vulnerability found in UniFi Access Application to execute a Command Injection on the host device. |
| CVE-2026-55117 | Alta (8.6) | 0.56% | — | 2 jul 2026 | A malicious actor with access to the network could exploit a Path Traversal vulnerability found in UniFi Access Application to access files on the host device. |
| CVE-2026-54400 | Crítica (9.1) | 0.52% | — | 2 jul 2026 | A malicious actor with access to the network and high privileges could exploit an Improper Access Control vulnerability found in UniFi Access Application to escalate privileges on the host device. |
| CVE-2026-50748 | Crítica (9.9) | 1.6% | — | 2 jul 2026 | A malicious actor with access to the network and low privileges could exploit an Improper Input Validation vulnerability found in UniFi Access Application to execute a Command Injection on the host device. |
| CVE-2025-52665 | Crítica (10) | 41% | — | 31 oct 2025 | A malicious actor with access to the management network could exploit a misconfiguration in UniFi’s door access application, UniFi Access, that exposed a management API without proper authentication. This vulnerability… |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.
Otros productos de UI
Unifi Protect · 21Unifi Network Application · 15Unifi OS · 12Unifi Dream Machine PRO Firmware · 11Unifi OS Server · 11Unifi Cloud Gateway MAX Firmware · 10Unifi Cloud Gateway Fiber Firmware · 10Unifi Dream Router 7 Firmware · 10Enterprise Network Video Recorder Firmware · 10Unifi Dream Machine PRO MAX Firmware · 10Enterprise Network Video Recorder Core Firmware · 10Unifi Cloudkey Firmware · 10