CVE-2026-48610: High severity Ubiquiti UniFi OS vulnerability
Under certain network configurations, a malicious actor with access to network could exploit an Improper Access Control vulnerability found in certain devices running UniFi OS to make unauthorized changes to such UniFi OS devices.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Configuration
Disable remote/WAN management or restrict remote access to trusted internal networks only; if remote management is required, limit access to specific management IPs.
UniFi OS remote management / remote access = disabled or restricted to trusted networks - Compensating control
Restrict network access to UniFi OS management interfaces to trusted IPs and networks using firewall rules or ACLs; block access from untrusted or public networks.
- Compensating control
Place UniFi OS devices on a dedicated management VLAN or isolated network segment and prevent lateral access from user/guest networks.
- Operational
Audit UniFi OS device logs and recent configuration changes for signs of unauthorized modification; if unauthorized changes are detected, restore known-good configuration or backups and isolate affected devices from the network until remediated.
- Operational
If compromise is suspected or confirmed, rotate credentials used for device management and any related service accounts after isolating and remediating devices.
Event History
Frequently Asked Questions
What is the severity of CVE-2026-48610?
The severity of CVE-2026-48610 is rated as high, with a score of 8.1.
How do I fix CVE-2026-48610?
To fix CVE-2026-48610, ensure that all devices running UniFi OS are updated to the latest security patches provided by Ubiquiti.
What are the potential impacts of CVE-2026-48610?
CVE-2026-48610 allows malicious actors to make unauthorized changes to UniFi OS devices, potentially compromising network security.
Who is affected by CVE-2026-48610?
CVE-2026-48610 affects devices running UniFi OS under certain network configurations.
What type of vulnerability is CVE-2026-48610?
CVE-2026-48610 is an Improper Access Control vulnerability.