ZeroHour

CVE-2026-55116

CVSS 3.1
9.8 critical
EPSS
<1%p35
Published
()
Modified
Description

A malicious actor with access to the network and under certain network configurations could exploit an Improper Access Control vulnerability found in certain devices running UniFi OS to make unauthorized changes to such UniFi OS devices.

Vendors
ui
Products
unifi connect
Weakness
CWE-284
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news