First published: Mon Jan 23 2017(Updated: )
Ubiquiti Networks UniFi 5.2.7 does not restrict access to the database, which allows remote attackers to modify the database by directly connecting to it.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Ubiquiti Networks UniFi AP AC Lite Firmware | <=5.2.7 | |
Ubiquiti Networks UniFi AP AC Lite Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-7792 is considered a high severity vulnerability due to the potential for remote attackers to gain unauthorized access to the database.
To fix CVE-2016-7792, upgrade Ubiquiti Networks UniFi to a version later than 5.2.7 where the access control issues have been resolved.
CVE-2016-7792 affects Ubiquiti Networks UniFi version 5.2.7 and potentially earlier versions.
CVE-2016-7792 allows remote attackers to modify the database by directly accessing it without proper restrictions.
Yes, CVE-2016-7792 is exploitable remotely due to the improper access control in the affected software.