Description
A malicious actor with access to the network and low privileges could exploit an Improper Access Control vulnerability found in UniFi Talk Application to escalate privileges within the UniFi Talk Application.
Severity (CVSS)
| Base score | 8.1 |
|---|---|
| Severity | High |
| Version | CVSS 3.1 |
| Vector | CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N |
| Provided by | CNA |
Weaknesses
- CWE-284 — CWE-284 Improper Access Control - Generic
Affected products
| Vendor | Product | Versions |
|---|---|---|
| Ubiquiti Inc | UniFi Talk Application | 0 to <5.2.2 |
References
Generated from the official CVE List on 03 Jul 2026 07:05 UTC.