UI EdgeOS 1.9.1

CPE Details

UI EdgeOS 1.9.1
1.9.1
2020-02-10
18h51 +00:00
2020-02-10
18h51 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:o:ui:edgeos:1.9.1:*:*:*:*:*:*:*

Informations

Vendor

ui

Product

edgeos

Version

1.9.1

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2018-5265 2019-06-07 12h59 +00:00 Ubiquiti EdgeOS 1.9.1 on EdgeRouter Lite devices allows remote attackers to execute arbitrary code with admin credentials, because /opt/vyatta/share/vyatta-cfg/templates/system/static-host-mapping/host-name/node.def does not sanitize the 'alias' or 'ips' parameter for shell metacharacters.
7.2
High
CVE-2017-0935 2018-03-22 14h00 +00:00 Ubiquiti Networks EdgeOS version 1.9.1.1 and prior suffer from an Improper Privilege Management vulnerability due to the lack of protection of the file system leading to sensitive information being exposed. An attacker with access to an operator (read-only) account could escalate privileges to admin (root) access in the system.
8.8
High