CVE-2025-52665 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

A malicious actor with access to the management network could exploit a misconfiguration in UniFi’s door access application, UniFi Access, that exposed a manage…
Critical CVSS: 10.0

CVE-2025-52665

A malicious actor with access to the management network could exploit a misconfiguration in UniFi’s door access application, UniFi Access, that exposed a management API without proper authentication. This vulnerability was introduced in Version 3.3.22 and was fixed in Version 4.0.21 and later. 

Affected Products:
UniFi Access Application (Version 3.3.22 through 3.4.31). 


Mitigation:
Update your UniFi Access Application to Version 4.0.21 or later.
Vendor
Ui
Product
Unifi Access
CWE
CWE-306
Yayın Tarihi
2025-10-31 00:15:37
Güncelleme
2025-11-12 14:51:21
Source Identifier
support@hackerone.com
KEV Date Added
-

Kategoriler

Referanslar