CVE-2025-48978: Ubiquiti Inc Edgemax Edgeswitch

High severity, CVSS 7.5. EPSS: 0.7% chance of exploitation in the next 30 days.

An Improper Input Validation in EdgeMAX EdgeSwitch (Version 1.11.0 and earlier) could allow a Command Injection by a malicious actor with access to EdgeSwitch adjacent network. Affected Products: EdgeMAX EdgeSwitch (Version 1.11.0 and earlier) Mitigation: Update the EdgeMAX EdgeSwitch to Version 1.11.1 or later.

Affected products

  • Ubiquiti Inc Edgemax Edgeswitch: before 1.11.1 (fixed in 1.11.1)

Published 2025-08-21. Last modified 2026-06-17.