PT-2026-32535 · Ubiquiti · Unifi Play Poweramp+1
Published
2026-04-13
·
Updated
2026-05-10
·
CVE-2026-22564
CVSS v3.1
9.8
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
UniFi Play PowerAmp versions prior to 1.0.38
UniFi Play Audio Port versions prior to 1.1.9
Description
Improper Access Control in the UniFi Play network allows a malicious actor with network access to enable SSH, which can lead to unauthorized changes to the system.
Recommendations
Update UniFi Play PowerAmp to version 1.0.38 or later.
Update UniFi Play Audio Port to version 1.1.9 or later.
Fix
Improper Access Control
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Unifi Play Audio Port
Unifi Play Poweramp