CVE-2025-27214: Ubiquiti Inc UniFi Connect Ev Station Pro

Critical severity, CVSS 9.8. EPSS: 0.4% chance of exploitation in the next 30 days.

A Missing Authentication for Critical Function vulnerability in the UniFi Connect EV Station Pro may allow a malicious actor with physical or adjacent access to perform an unauthorized factory reset. Affected Products: UniFi Connect EV Station Pro (Version 1.5.18 and earlier) Mitigation: Update UniFi Connect EV Station Pro to Version 1.5.27 or later

Affected products

  • Ubiquiti Inc UniFi Connect Ev Station Pro: before 1.5.27 (fixed in 1.5.27)

Published 2025-08-21. Last modified 2026-06-17.