CVE-2026-56841
HIGH8.8CVSS v3
—CVSS v2
0.25%
EPSS (exploit probability)
CWE-89CWE
Description
A malicious actor with access to the network and low privileges could exploit an authenticated SQL Injection vulnerability found in UniFi Protect Application to escalate privileges on the host device.
CVSS v3 vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Affected routers (0)
No routers currently mapped to this CVE in our database.