Vulnerability Details CVE-2023-28365
A backup file vulnerability found in UniFi applications (Version 7.3.83 and earlier) running on Linux operating systems allows application administrators to execute malicious commands on the host device being restored.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 40.5%
CVSS Severity
CVSS v3 Score 9.1
Products affected by CVE-2023-28365
-
cpe:2.3:a:ui:unifi_network_application:-
-
cpe:2.3:a:ui:unifi_network_application:6.2.23
-
cpe:2.3:a:ui:unifi_network_application:6.2.25
-
cpe:2.3:a:ui:unifi_network_application:6.2.26
-
cpe:2.3:a:ui:unifi_network_application:6.4.54
-
cpe:2.3:a:ui:unifi_network_application:6.5.51
-
cpe:2.3:a:ui:unifi_network_application:6.5.52
-
cpe:2.3:a:ui:unifi_network_application:6.5.53
-
cpe:2.3:a:ui:unifi_network_application:6.5.54
-
cpe:2.3:a:ui:unifi_network_application:6.5.55
-
cpe:2.3:a:ui:unifi_network_application:7.0.20
-
cpe:2.3:a:ui:unifi_network_application:7.0.21
-
cpe:2.3:a:ui:unifi_network_application:7.0.22
-
cpe:2.3:a:ui:unifi_network_application:7.0.23
-
cpe:2.3:a:ui:unifi_network_application:7.0.25
-
cpe:2.3:a:ui:unifi_network_application:7.1.61
-
cpe:2.3:a:ui:unifi_network_application:7.1.65
-
cpe:2.3:a:ui:unifi_network_application:7.1.66
-
cpe:2.3:a:ui:unifi_network_application:7.1.67
-
cpe:2.3:a:ui:unifi_network_application:7.1.68
-
cpe:2.3:a:ui:unifi_network_application:7.2.91
-
cpe:2.3:a:ui:unifi_network_application:7.2.92
-
cpe:2.3:a:ui:unifi_network_application:7.2.93
-
cpe:2.3:a:ui:unifi_network_application:7.2.94
-
cpe:2.3:a:ui:unifi_network_application:7.2.95
-
cpe:2.3:a:ui:unifi_network_application:7.2.97
-
cpe:2.3:a:ui:unifi_network_application:7.3.76
-
cpe:2.3:a:ui:unifi_network_application:7.3.81
-
cpe:2.3:a:ui:unifi_network_application:7.3.83
-
cpe:2.3:o:linux:linux_kernel:-