CVE-2021-22882: High severity UI Unifi Protect Controller vulnerability
UniFi Protect before v1.17.1 allows an attacker to use spoofed cameras to perform a denial-of-service attack that may cause the UniFi Protect controller to crash.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-22882?
CVE-2021-22882 is a vulnerability in UniFi Protect before v1.17.1 that allows an attacker to use spoofed cameras to perform a denial-of-service attack.
What is the severity of CVE-2021-22882?
The severity of CVE-2021-22882 is high, with a CVSS score of 7.5.
Which software versions are affected by CVE-2021-22882?
UniFi Protect versions before v1.17.1 are affected by CVE-2021-22882.
How can an attacker exploit CVE-2021-22882?
An attacker can exploit CVE-2021-22882 by using spoofed cameras to perform a denial-of-service attack on the UniFi Protect controller, potentially causing it to crash.
Are the UniFi Cloud Key Plus, UniFi Dream Machine Pro, and UniFi Network Video Recorder affected by CVE-2021-22882?
No, the UniFi Cloud Key Plus, UniFi Dream Machine Pro, and UniFi Network Video Recorder are not affected by CVE-2021-22882.
Where can I find more information about CVE-2021-22882?
You can find more information about CVE-2021-22882 in the security advisory bulletin and the HackerOne report linked in the references.