216.73.217.22

CVE-2025-23091

· Published 01/02/2025 07:15 · Modified 01/02/2025 07:15

Labels: CVE-2025-23091 2025-02-01CVE-2025-23091[email protected]

Essential information

Published
01/02/2025 07:15
Modified
01/02/2025 07:15
Author
Creator
CVSS
5.9 MEDIUM (v3.0)
CISA KEV
No
CWE
CVSS vector
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N

CVSS metrics

Description

An Improper Certificate Validation on UniFi OS devices, with Identity Enterprise configured, could allow a malicious actor to execute a man-in-the-middle (MitM) attack during application update.

NVD status

Status
Awaiting Analysis — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

References