Impact
A malicious actor that can reach the internal network can exploit a Server‑Side Request Forgery flaw in the UniFi Talk Application to send crafted requests to arbitrary URLs. The application then initiates outbound connections that consume resources, causing a denial of service, while simultaneously bypassing authentication checks on certain API endpoints. The weakness is classified as CWE‑918.
Affected Systems
Ubiquiti Inc’s UniFi Talk Application is the affected product. No specific version information is disclosed, so all current releases that have not applied the vendor’s patch may potentially be vulnerable.
Risk and Exploitability
The CVSS score of 7.5 indicates high severity, while the EPSS score of less than 1% signifies a very low probability of exploitation in the wild; it is not listed in CISA KEV, meaning no known public exploits exist. Likely attack vectors include entities with internal network or compromised device access that can target the vulnerable API endpoints, and the SSRF flaw gives the attacker the ability to reach external resources, which could amplify the impact. Despite the low exploitation probability, the combination of DoS and authentication bypass poses significant risk to service availability and unauthorized access.
OpenCVE Enrichment