← volver
CVE-2023-31997

CVE-2023-31997

EPSS 0.3%CWE-863
Vexday Risk Score
3Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS EPSS 0.3%KEV nãoPoC Nuclei Metasploit Patch
Ciclo de vida
30 jun 2023Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
UniFi OS 3.1 introduces a misconfiguration on consoles running UniFi Network that allows users on a local network to access MongoDB. Applicable Cloud Keys that are both (1) running UniFi OS 3.1 and (2) hosting the UniFi Network application. "Applicable Cloud Keys" include the following: Cloud Key Gen2 and Cloud Key Gen2 Plus.
Productos afectados
Ubiquiti Inc. · UniFi OS