CVE-2026-33000
קריטית 9.1
תיאור (מקור, אנגלית)
A malicious actor with access to the network and high privileges could exploit an Improper Input Validation vulnerability found in UniFi OS devices to execute a Command Injection.
מדדים
- CVSS 3.1
-
9.1 (CRITICAL)
מקור הציון: CNA
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H - EPSS — סבירות ניצול
- 1% (אחוזון 100) נכון ל-1/10/2026
- CWE
- CWE-20
מוצרים מושפעים
ui: unifi os server
קישורים
- https://community.ui.com/releases/Security-Advisory-Bulletin-064-064/84811c09-… PatchVendor Advisory