PT-2022-27251 · Ubiquiti · Airfiber 60 Xg/Hd+4

Published

2022-12-23

·

Updated

2023-06-27

·

CVE-2022-44565

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions airMAX AC versions prior to 8.7.11 airFiber 60/LR versions prior to 2.6.2 airFiber 60 XG/HD versions prior to 1.0.0 airFiber GBE versions prior to 1.4.1
Description An improper access validation issue exists that allows a malicious actor to retrieve status and usage data from the UISP device.
Recommendations For airMAX AC versions prior to 8.7.11, update to version 8.7.11 or later. For airFiber 60/LR versions prior to 2.6.2, update to version 2.6.2 or later. For airFiber 60 XG/HD versions prior to 1.0.0, update to version 1.0.0 or later. For airFiber GBE versions prior to 1.4.1, update to version 1.4.1 or later.

Fix

Improper Access Control

Weakness Enumeration

Related Identifiers

CVE-2022-44565

Affected Products

Uisp
Airfiber 60 Xg/Hd
Airfiber 60/Lr
Airfiber Gbe
Airmax Ac