Ubiquiti Inc Unifi Connect Application vulnerabilities
3 known vulnerabilities affecting ubiquiti_inc/unifi_connect_application.
Total CVEs
3
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH2
Vulnerabilities
Page 1 of 1
CVE-2026-50746P2CRITICALCVSS 10.0fixed in 3.4.202026-07-02
CVE-2026-50746 [CRITICAL] CWE-284 CVE-2026-50746: A malicious actor with access to the network could exploit an Improper Access Control vulnerability
A malicious actor with access to the network could exploit an Improper Access Control vulnerability found in UniFi Connect Application to execute a Command Injection on the host device.
nvd
CVE-2026-77538P3HIGHCVSS 8.2fixed in 3.24.222026-08-26
CVE-2026-77538 [HIGH] CWE-284 CVE-2026-77538: A malicious actor with access to the network could exploit an Improper Access Control vulnerability
A malicious actor with access to the network could exploit an Improper Access Control vulnerability found in UniFi Connect Application to escalate privileges within the UniFi Connect Application.
nvd
CVE-2024-29207P3HIGHCVSS 7.5≥ 3.10.7, < 3.10.72024-05-07
CVE-2024-29207 [HIGH] CWE-284 CVE-2024-29207: An Improper Certificate Validation could allow a malicious actor with access to an adjacent network
An Improper Certificate Validation could allow a malicious actor with access to an adjacent network to take control of the system.
Affected Products:
UniFi Connect Application (Version 3.7.9 and earlier)
UniFi Connect EV Station (Version 1.1.18 and earlier)
UniFi Connect EV Station Pro (Version 1.1.18 and earlier)
UniFi Connect Display (Version
nvd