Security Advisory

CVE-2024-45205

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-12-04 01:06:04
Last updated 2024-12-04 16:29:27
Assigner hackerone
State PUBLISHED

Description

An Improper Certificate Validation on the UniFi iOS App managing a standalone UniFi Access Point (not using UniFi Network Application) could allow a malicious actor with access to an adjacent network to take control of this UniFi Access Point. Affected Products: UniFi iOS App (Version 10.17.7 and earlier) Mitigation: UniFi iOS App (Version 10.18.0 or later).