Back

HIGH

A malicious actor with access to the network and low privileges could exploit an authenticated SQL Injection vulnerability found in UniFi Protect Application to escalate privileges on the host device

Published Jul 2, 2026

Description

A malicious actor with access to the network and low privileges could exploit an authenticated SQL Injection vulnerability found in UniFi Protect Application to escalate privileges on the host device.

Affected products

Remediation

No remediation recorded yet.

Metrics

Weaknesses (1)

References (1)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner hackerone
Published Jul 2, 2026
Updated Jul 2, 2026
Reserved Jun 23, 2026
CISA Vulnrichment
Updated Jul 2, 2026
NVD
Status Analyzed
Modified Jul 6, 2026
Red Hat
Severity n/a
Public date n/a