Ubiquiti UniFi Network Controller
cpe:2.3:a:ubnt:unifi_controller:*:*:*:*:*:*:*, +2 more
- < 5.10.12
- >= 5.6.42, < 5.6.42
A vulnerability exists in multiple Ubiquiti UniFi products, including the UniFi Network Controller (versions prior to 5.10.12, excluding 5.6.42), UniFi UAP Firmware (prior to 4.0.6), UAP-AC, UAP-AC v2, and UAP-AC Outdoor Firmware (prior to 3.8.17), UniFi USW Firmware (prior to 4.0.6), and UniFi USG Firmware (prior to 4.4.34). These products use AES-CBC encryption for device-to-controller communication, which is cryptographically weak and allows attackers to recover encryption keys from intercepted traffic. This vulnerability can be exploited by attackers with adjacent network access who capture enough encrypted traffic to derive the encryption keys, potentially leading to unauthorized control and management of the affected network devices.
Exploitation of this vulnerability allows for recovery of encryption keys from captured traffic, enabling unauthorized control and management of affected network devices.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.