CVE-2026-54403
—CVSS 3.1
8.6 high
EPSS
<1%p54
Published
()
Modified
Description
A malicious actor with access to the network could exploit a Path Traversal vulnerability found in certain devices running UniFi OS to bypass authentication of such UniFi OS devices or instances.
- Vendors
- ui
- Products
- unifi os server, unifi dream machine firmware, unifi dream machine pro firmware, unifi dream machine special edition firmware, unifi dream machine pro max firmware, unifi dream machine beast firmware, enterprise fortress gateway firmware, unifi dream router firmware, unifi dream wall firmware, unifi dream router 7 firmware, unifi express 7 firmware, unifi cloudkey firmware
- Weakness
- CWE-22
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N
In the news0 stories
No ingested article mentions this CVE yet.