Vulnerability Description
UniFi iOS app 10.15.0 introduces a misconfiguration on 2nd Generation UniFi Access Points configured as standalone (not using UniFi Network Application) that could cause the SSID name to change and/or the WiFi Password to be removed on the 5GHz Radio. This vulnerability is fixed in UniFi iOS app 10.15.2 and later.
CVSS Score
MEDIUM
References
- https://community.ui.com/releases/Security-Advisory-Bulletin-040-040/b4b508c0-84
- https://community.ui.com/releases/Security-Advisory-Bulletin-040-040/b4b508c0-84
FAQ
What is CVE-2024-34786?
CVE-2024-34786 is a vulnerability with a CVSS score of 4.8 (MEDIUM). UniFi iOS app 10.15.0 introduces a misconfiguration on 2nd Generation UniFi Access Points configured as standalone (not using UniFi Network Application) that could cause the SSID name to change and/or...
How severe is CVE-2024-34786?
CVE-2024-34786 has been rated MEDIUM with a CVSS base score of 4.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2024-34786?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.