As cited
Copy frozen at (site build).
NCSC-2026-0330 [1.00] [M/H] Kwetsbaarheden verholpen in UniFi-producten van Ubiquiti
No summary had been written when this copy was frozen.
- First seen by Cybersecurity Tracker
Source attribution
Correction
Correction recorded as of .
vulnerabilities
NCSC-2026-0330 [1.00] [M/H] Kwetsbaarheden verholpen in UniFi-producten van Ubiquiti
Ubiquiti patched multiple vulnerabilities across its UniFi product line, including Protect, OS, Network Application, Connect, Access Application, and audio/video systems. The flaws involve improper input validation and access control that enable command injection, authentication bypass via CRLF sequence neutralization, and privilege escalation through active debug code. Exploitation requires network access and can allow arbitrary code execution and full system compromise.
Why it matters: Organizations running UniFi infrastructure must patch immediately, as attackers with network access can execute commands with process privileges, bypass authentication, or escalate privileges without requiring prior elevated access.
- Source published
- First seen by Cybersecurity Tracker