CVE-2022-44565: Medium severity ubiquiti airfiber gigabeam firmware vulnerability
An improper access validation vulnerability exists in airMAX AC <8.7.11, airFiber 60/LR <2.6.2, airFiber 60 XG/HD <v1.0.0 and airFiber GBE <1.4.1 that allows a malicious actor to retrieve status and usage data from the UISP device.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2022-44565?
CVE-2022-44565 is an improper access validation vulnerability that exists in airMAX AC <8.7.11, airFiber 60/LR <2.6.2, airFiber 60 XG/HD <v1.0.0 and airFiber GBE <1.4.1.
How can a malicious actor exploit CVE-2022-44565?
A malicious actor can exploit CVE-2022-44565 to retrieve status and usage data from the UISP device.
What is the severity of CVE-2022-44565?
CVE-2022-44565 has a severity rating of 5.3 (Medium).
Which software versions are affected by CVE-2022-44565?
CVE-2022-44565 affects airMAX AC versions earlier than 8.7.11, airFiber 60/LR versions earlier than 2.6.2, airFiber 60 XG/HD versions earlier than 1.0.0, and airFiber GBE versions earlier than 1.4.1.
Is there a fix for CVE-2022-44565?
Yes, updating to airMAX AC version 8.7.11, airFiber 60/LR version 2.6.2, airFiber 60 XG/HD version 1.0.0, or airFiber GBE version 1.4.1 will fix CVE-2022-44565.