Vulnerability Description
A vulnerability found in UniFi Protect application V1.18.1 and earlier allows a malicious actor with a view-only role and network access to gain the same privileges as the owner of the UniFi Protect application. This vulnerability is fixed in UniFi Protect application V1.19.0 and later.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ui | Unifi Protect | < 1.19.0 |
References
- https://community.ui.com/releases/Security-Advisory-Bulletin-019-019/90a00abe-d6Vendor Advisory
- https://community.ui.com/releases/Security-Advisory-Bulletin-019-019/90a00abe-d6Vendor Advisory
FAQ
What is CVE-2021-22944?
CVE-2021-22944 is a vulnerability with a CVSS score of 8.0 (HIGH). A vulnerability found in UniFi Protect application V1.18.1 and earlier allows a malicious actor with a view-only role and network access to gain the same privileges as the owner of the UniFi Protect a...
How severe is CVE-2021-22944?
CVE-2021-22944 has been rated HIGH with a CVSS base score of 8.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2021-22944?
Check the references section above for vendor advisories and patch information. Affected products include: Ui Unifi Protect.