CVE 3.4 LOW

CVE-2025-48979_CVE-2025-48979

3.4 / 10
LOW
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:N

Description

An Improper Input Validation in UISP Application could allow a Command Injection by a malicious actor with High Privileges and local access.

Basic Information

ID CVE-2025-48979
Source hackerone
Published Aug 28, 2025 at 23:07
Modified Aug 29, 2025 at 13:17

Affected Product

Vendor Ubiquiti Inc
Product UISP Application
Version 2.4.220
Affected Versions Ubiquiti Inc UISP Application 2.4.220

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.