Insufficient Firmware Update Validation in UniFi Protect Cameras by Ubiquiti
CVE-2025-23117
6.8MEDIUM
What is CVE-2025-23117?
An Insufficient Firmware Update Validation vulnerability exists in UniFi Protect Cameras, allowing an authenticated attacker with network access to make unauthorized changes to the camera system. This can result in significant security risks within the network, as the integrity of the device's firmware may be compromised.
Affected Version(s)
UniFi Protect Cameras 4.74.106
References
CVSS V3.1
Score:
6.8
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
