Impact
UniFi OS devices have a directory traversal flaw known as CWE‑22 that allows an attacker with network access to read or alter files on the host operating system. The official description does not state whether authentication is required, so the vulnerability may be exploited from any machine that can reach the device’s management interface, but credentials are not confirmed as necessary. By manipulating accessed files, an adversary can gain control of a privileged system account, effectively taking full control of the device and its running services.
Affected Systems
All Ubiquiti UniFi OS devices listed by the CNA—routers, switches, access points, UDM family, UNAS, UNVR, UCG, and the UniFi OS Server—are potentially vulnerable. No specific firmware versions are provided, so every deployed device could be affected until an official patch is issued.
Risk and Exploitability
The CVSS score of 10 marks this flaw as critical, and the EPSS score of 64% indicates a relatively high likelihood of exploitation. The vulnerability is listed in CISA’s KEV catalog, confirming that attacks have already occurred. Although explicit credential requirements are not mentioned, the description states that a malicious actor with network access can abuse the path traversal flaw. Successful exploitation can lead to compromise of system accounts and substantial privilege escalation, enabling further network pivoting or malware deployment.
OpenCVE Enrichment