CVE-2024-42028: Ubiquiti UniFi Network Application
High severity, CVSS 8.8. EPSS: 0.2% chance of exploitation in the next 30 days.
A Local privilege escalation vulnerability found in a Self-Hosted UniFi Network Server with UniFi Network Application (Version 8.4.62 and earlier) allows a malicious actor with a local operational system user to execute high privilege actions on UniFi Network Server.
Affected products
- Ubiquiti UniFi Network Application: up to and including 8.4.62
- Ubiquiti Inc UniFi Network Application: from 8.4.62, up to and including 8.4.62
Published 2024-10-28. Last modified 2026-06-17.