Search Results (3 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2026-50747 2 Ubiquiti, Ui 2 Unifi Talk Application, Unifi Talk Application 2026-09-30 9.9 Critical
A malicious actor with access to the network and low privileges could exploit a series of authenticated SQL Injection vulnerabilities found in UniFi Talk Application to escalate privileges on the host device.
CVE-2026-55113 2 Ubiquiti, Ui 2 Unifi Talk Application, Unifi Talk Application 2026-09-30 7.5 High
A malicious actor with access to the network could exploit a Server-Side Request Forgery (SSRF) vulnerability found in UniFi Talk Application to execute a Denial of Service (DoS) attack and bypass authentication in certain UniFi Talk API endpoints.
CVE-2026-55119 2 Ubiquiti, Ui 2 Unifi Talk Application, Unifi Talk Application 2026-08-03 8.1 High
A malicious actor with access to the network and low privileges could exploit an Improper Access Control vulnerability found in UniFi Talk Application to escalate privileges within the UniFi Talk Application.