Executive brief
Ubiquiti UniFi wireless access points contain a security flaw where the internal database is not properly protected from unauthorized access. An attacker on the same local network can connect directly to this database to view or modify sensitive configuration data. This could lead to a complete takeover of the device, unauthorized changes to network settings, or a total disruption of wireless services.
Technical details
An improper access control vulnerability (CWE-284) exists in Ubiquiti UniFi AP AC Lite firmware version 5.2.7. The underlying database does not implement sufficient authentication or network-level restrictions, allowing any attacker with adjacent network access to establish a direct connection. Once connected, an unauthenticated attacker can execute arbitrary database commands to read, modify, or delete data. This can result in the compromise of administrative credentials, modification of device configurations, or a denial-of-service condition. The vulnerability is exploitable over the local network without user interaction.
Affected products
- Ubiquiti Networks UniFi AP AC Lite 5.2.7
Timeline
- 2016-09-30: disclosed: Initial discovery/SecurityFocus entry date
- 2017-01-23: advisory: NVD publication date