← All CVEs

CVE-2026-54400

critical · 9.1

A malicious actor with access to the network and high privileges could exploit an Improper Access Control vulnerability found in UniFi Access Application to escalate privileges on the host device.

9.1
CVSS
0.5%
EPSS (exploit prob.)
43rd
EPSS percentile
2026-07-02
Published

CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H

Weaknesses

CWE-284

Affected products

VendorProductAffected versions
uiunifi_access< 4.2.29

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2026-54400