CVE-2023-28365:

0.0 CVSS

Description

A backup file vulnerability found in UniFi applications (Version 7.3.83 and earlier) running on Linux operating systems allows application administrators to execute malicious commands on the host device being restored.

Classification

CVE ID: CVE-2023-28365

CVSS Base Severity: LOW

CVSS Base Score: 0.0

Affected Products

Vendor: Ubiquiti Inc.

Product: UniFi Network application

Exploit Prediction Scoring System (EPSS)

EPSS Score: 0.08% (probability of being exploited)

EPSS Percentile: 36.92% (scored less or equal to compared to others)

EPSS Date: 2025-02-03 (when was this score calculated)

References

https://community.ui.com/releases/Security-Advisory-Bulletin-031-031/8c85fc64-e9a8-4082-9ec4-56b14effd545

Timeline