CVE-2017-0938

HIGH
7.5CVSS v3
5.0CVSS v2
20.97% EPSS (exploit probability)
CWE-400CWE

Description

Denial of Service attack in airMAX < 8.3.2 , airMAX < 6.0.7 and EdgeMAX < 1.9.7 allow attackers to use the Discovery Protocol in amplification attacks.

CVSS v3 vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Affected routers (3)

VendorModelMatched viaAffected versionsFixed inPatch Status
Ubiquiti Ubiquiti airMAX (airOS) Unpatched
Ubiquiti Ubiquiti EdgeRouter 4 Unpatched
Ubiquiti Ubiquiti EdgeRouter X Unpatched

External references