A malicious actor with access to the network and high privileges could exploit an Improper Input Validation vulnerability found in UniFi OS devices to execute a Command Injection.
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Fri, 22 May 2026 02:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Command Injection via Improper Input Validation in UniFi OS Devices |
Fri, 22 May 2026 01:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A malicious actor with access to the network and high privileges could exploit an Improper Input Validation vulnerability found in UniFi OS devices to execute a Command Injection. | |
| Weaknesses | CWE-20 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: hackerone
Published:
Updated: 2026-05-22T00:43:49.138Z
Reserved: 2026-03-17T15:00:07.747Z
Link: CVE-2026-33000
No data.
Status : Received
Published: 2026-05-22T02:16:33.933
Modified: 2026-05-22T02:16:33.933
Link: CVE-2026-33000
No data.
OpenCVE Enrichment
Updated: 2026-05-22T02:30:16Z
Weaknesses