Vulnerability Description
A Cross-Site Scripting (XSS) vulnerability found in UniFi Network (Version 7.3.83 and earlier) allows a malicious actor with Site Administrator credentials to escalate privileges by persuading an Administrator to visit a malicious web page.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ui | Unifi Network Application | <= 7.3.83 |
Related Weaknesses (CWE)
References
- https://community.ui.com/releases/Security-Advisory-Bulletin-034-034/53cfcb84-b4Issue TrackingVendor Advisory
- https://community.ui.com/releases/Security-Advisory-Bulletin-034-034/53cfcb84-b4Issue TrackingVendor Advisory
FAQ
What is CVE-2023-32000?
CVE-2023-32000 is a vulnerability with a CVSS score of 4.8 (MEDIUM). A Cross-Site Scripting (XSS) vulnerability found in UniFi Network (Version 7.3.83 and earlier) allows a malicious actor with Site Administrator credentials to escalate privileges by persuading an Admi...
How severe is CVE-2023-32000?
CVE-2023-32000 has been rated MEDIUM with a CVSS base score of 4.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2023-32000?
Check the references section above for vendor advisories and patch information. Affected products include: Ui Unifi Network Application.