ZeroHour

CVE-2026-54407

CVSS 3.1
8.6 high
EPSS
<1%p38
Published
()
Modified
Description

A malicious actor with access to the network could exploit an Improper Access Control vulnerability found in UniFi Protect Application to bypass authentication in certain UniFi Protect Application API endpoints.

Vendors
ui
Products
unifi protect
Weakness
CWE-284
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:H

In the news

No ingested article mentions this CVE yet.