CVE-2022-22570: Buffer Overflow
A buffer overflow vulnerability found in the UniFi Door Access Reader Lite’s (UA Lite) firmware (Version 3.8.28.24 and earlier) allows a malicious actor who has gained access to a network to control all connected UA devices. This vulnerability is fixed in Version 3.8.31.13 and later.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-22570?
CVE-2022-22570 is a buffer overflow vulnerability found in the UniFi Door Access Reader Lite’s (UA Lite) firmware (Version 3.8.28.24 and earlier).
How can a malicious actor exploit CVE-2022-22570?
A malicious actor who has gained access to a network can exploit CVE-2022-22570 to control all connected UA devices.
Is there a fix available for CVE-2022-22570?
Yes, the vulnerability is fixed in Version 3.8.31.13 and later of the UniFi Door Access Reader Lite’s (UA Lite) firmware.
What is the severity of CVE-2022-22570?
CVE-2022-22570 has a severity level of critical.
What are the Common Weakness Enumerations (CWE) associated with CVE-2022-22570?
CVE-2022-22570 is associated with CWE-119 and CWE-120.