9.9
/ 10
CRITICAL
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Description
A malicious actor with access to the network and low privileges could exploit an Improper Input Validation vulnerability found in UID Enterprise Agent to execute a Command Injection on the host device.
AI Analysis
Improper Input Validation vulnerability in UID Enterprise Agent allowing Command Injection
Basic Information
ID
CVE-2026-47367
Source
hackerone
Published
Jun 12, 2026 at 02:27
Affected Product
Vendor
Ubiquiti Inc
Product
UID Enterprise Agent
Affected Versions
Ubiquiti Inc UID Enterprise Agent 0
CWE Classification
AI Assessment
AI Score
9.9 / 10
AI Severity
Critical
Vendor
Ubiquiti Inc
Product
UID Enterprise Agent