CVE-2026-77543: Input Validation
Published Aug 26, 2026
·Updated
A malicious actor with access to the network and low privileges could exploit an Improper Input Validation vulnerability found in UniFi Access Application to execute a Command Injection on the host device.
Affected Software
1 affected component
UniFi Access Application
Event History
Aug 26, 2026
CVE Published
via MITRE·10:07 AM
Data Sourced
via MITRE·10:07 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
Which deployments should be prioritized for remediation?
Prioritize UniFi Access Application deployments reachable over the network where low-privileged accounts or access paths exist. Successful exploitation can result in command injection on the host device with high confidentiality, integrity, and availability impact.