HarborGuard / CVE
Back to search
CRITICALCVE-2026-22557Published Modified CNA hackerone

CVE-2026-22557: A malicious actor with access to the network could exploit a Path Traversal vulnerability found in the UniFi Network Application to access files on the underlying system that could be manipulated to access an underlying account

A malicious actor with access to the network could exploit a Path Traversal vulnerability found in the UniFi Network Application to access files on the underlying system that could be manipulated to access an underlying account.

Metrics

CVSS v3.1
10.0
Severity
CRITICAL
Fixed in
9.0.118
Affected Products
1

Fix available

9.0.11810.1.8910.2.97
Affected packages
  • Ubiquiti Inc / UniFi Network Application
    < 10.1.89 (from 10.1.89) · < 10.2.97 (from 10.2.97) · < 9.0.118 (from 9.0.118)
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H