Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Ui

First CVE: Jul 18, 2013Active for: 13 yearsTotal CVEs: 119
74.9
VTI Score
TOP TARGET

Ui's vulnerability footprint centers on a family of edge routers and routing appliances, particularly its ER-X product line, which serve as network boundary devices in enterprise and service-provider environments. Vulnerabilities affecting the vendor skew toward serious outcomes, with an elevated share reaching critical severity, and a moderate tendency toward public exploit availability, consistent with the high-value targeting of edge infrastructure. The exposure recurs through command-injection and OS-command-injection flaws, improper access control, and authentication weaknesses that are characteristic of network appliances accepting untrusted configuration and administrative input. Defenders should prioritize patches for internet-exposed instances of these edge routers and audit administrative access controls; live exploitation and severity counts are shown alongside this summary.

FAUCET AI Generated
119
Total CVEs
More Total CVEs than 99% of tracked vendors
0.0
Avg CVEs / Product / Year
Bottom 1%
8.0
Avg CVSS Score
Higher Avg CVSS Score than 78% of tracked vendors
3.4%
In CISA KEV
Higher KEV Rate than 99% of tracked vendors

Trends Over Time

The number and severity of CVEs published that impact products developed by Ui over time

Volume of CVEsAvg CVSS Base Score
First CVE
Jul 18, 2013
13 years ago
Most Recent CVE
Jul 2, 2026
22 days ago

Products(310 total)

Top CVEs

Signals from CVEs in this vendor scope (119 CVEs).

119 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2026-34910CRITICAL
A malicious actor with access to the network could exploit an Improper Input Validation vulnerability found in UniFi OS devices to execute a Command Injection.
May 22, 202610.098YESYES
CVE-2010-5330CRITICAL
On certain Ubiquiti devices, Command Injection exists via a GET request to stainfo.cgi (aka Show AP info) because the ifname variable is not sanitized, as demonstrated by shell met
Jun 11, 20199.884YESNO
CVE-2026-34909CRITICAL
A malicious actor with access to the network could exploit a Path Traversal vulnerability found in UniFi OS devices to access files on the underlying system that could be manipulat
May 22, 202610.082YESNO
CVE-2026-34908CRITICAL
A malicious actor with access to the network could exploit an Improper Access Control vulnerability found in UniFi OS devices to make unauthorized changes to the system.
May 22, 202610.082YESNO
CVE-2015-9266CRITICAL
The web management interface of Ubiquiti airMAX, airFiber, airGateway and EdgeSwitch XP (formerly TOUGHSwitch) allows an unauthenticated attacker to upload and write arbitrary file
Sep 5, 20189.881NOYES
CVE-2025-52665CRITICAL
A malicious actor with access to the management network could exploit a misconfiguration in UniFi’s door access application, UniFi Access, that exposed a management API without pro
Oct 31, 202510.071NOYES
CVE-2026-50746CRITICAL
A malicious actor with access to the network could exploit an Improper Access Control vulnerability found in UniFi Connect Application to execute a Command Injection on the host de
Jul 2, 202610.049NONO
CVE-2026-55115CRITICAL
A malicious actor with access to the network and low privileges could exploit a Server-Side Request Forgery (SSRF) in UniFi Protect Application to escalate privileges on the host d
Jul 2, 20269.943NONO
CVE-2026-50747CRITICAL
A malicious actor with access to the network and low privileges could exploit a series of authenticated SQL Injection vulnerabilities found in UniFi Talk Application to escalate pr
Jul 2, 20269.943NONO
CVE-2026-50748CRITICAL
A malicious actor with access to the network and low privileges could exploit an Improper Input Validation vulnerability found in UniFi Access Application to execute a Command Inje
Jul 2, 20269.943NONO
View all 119 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products119 CVEs
20%
55%
24%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local9 (7.6%)
Network94 (79.0%)
Unknown3 (2.5%)
Physical1 (0.8%)
Adjacent Network12 (10.1%)
Attack Complexity
Low106 (89.1%)
High10 (8.4%)
Unknown3 (2.5%)
User Interaction
None101 (84.9%)
Unknown3 (2.5%)
Required15 (12.6%)
Privileges Required
Low38 (31.9%)
High10 (8.4%)
None68 (57.1%)
Unknown3 (2.5%)

Exploit Exposure

Signals from CVEs in this vendor scope (119 CVEs).

CISA KEV
4 CVEs
3.4% of CVEs· 99th percentile
Metasploit
1 CVE
0.8% of CVEs· 97th percentile
Nuclei
2 CVEs
1.7% of CVEs· 95th percentile
ExploitDB
5 CVEs
4.2% of CVEs· 75th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Ui.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Ui — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Ui's Products

View all 4 CNAs →

Top CWEs