An Improper Certificate Validation on UniFi OS devices, with Identity Enterprise configured, could allow a malicious actor to execute a man-in-the-middle (MitM) attack during application update.
References
Configurations
No configuration.
History
13 Mar 2025, 13:15
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
|
CWE | CWE-295 |
01 Feb 2025, 07:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-02-01 07:15
Updated : 2025-03-13 13:15
NVD link : CVE-2025-23091
Mitre link : CVE-2025-23091
CVE.ORG link : CVE-2025-23091
JSON object : View
Products Affected
No product.
CWE
CWE-295
Improper Certificate Validation