PT-2025-6974 · Ubiquiti · Unifi Protect

Published

2025-02-18

·

Updated

2025-11-03

·

CVE-2025-23116

CVSS v3.1

9.6

Critical

VectorAV:A/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions UniFi Protect (affected versions not specified)
Description The issue is related to the Auto-Adopt Bridge Devices function in the UniFi Protect video surveillance system, which is based on artificial intelligence. It is connected to weaknesses in the authentication procedure. Exploitation of this issue may allow a remote attacker to bypass security restrictions and gain full control over the system.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Authentication

Weakness Enumeration

Related Identifiers

BDU:2025-02008
CVE-2025-23116
ZDI-25-378

Affected Products

Unifi Protect