First published: Fri Jan 14 2022(Updated: )
An injection vulnerability exists in a third-party library used in UniFi Network Version 6.5.53 and earlier (Log4J CVE-2021-44228) allows a malicious actor to control the application.
Credit: support@hackerone.com
Affected Software | Affected Version | How to fix |
---|---|---|
Ui Unifi Network Controller | <=6.5.53 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-44530 is an injection vulnerability that exists in a third-party library used in UniFi Network Version 6.5.53 and earlier.
CVE-2021-44530 has a severity rating of 9.8 out of 10, which is classified as critical.
CVE-2021-44530 allows a malicious actor to control the application, potentially leading to unauthorized access or other attacks.
Yes, UniFi Network Controller version 6.5.53 and earlier are affected by CVE-2021-44530.
To fix CVE-2021-44530, it is recommended to update UniFi Network Controller to a version that includes the necessary security patches.