An issue was discovered on Ubiquiti UniFi Meshing Access Point UAP-AC-M 4.3.21.11325 and UniFi Controller 6.0.28 devices. Cached credentials are not erased from an access point returning wirelessly from a disconnected state. This may provide unintended network access.
References
Configurations
History
21 Nov 2024, 05:21
Type | Values Removed | Values Added |
---|---|---|
References | () https://community.ui.com/questions/Possible-authentication-bypass-for-access-into-LAN/7965adb2-5d70-4410-8467-4c7bec76bc00 - Vendor Advisory |
Information
Published : 2020-10-27 21:15
Updated : 2024-11-21 05:21
NVD link : CVE-2020-27888
Mitre link : CVE-2020-27888
CVE.ORG link : CVE-2020-27888
JSON object : View
Products Affected
ui
- unifi_meshing_access_point_firmware
- unifi_controller_firmware
- unifi_controller
- unifi_meshing_access_point