CVE-2026-34909
A malicious actor with access to the network could exploit a Path Traversal vulnerability found in UniFi OS devices to access files on the underlying system that could be manipulated to access an underlying account.
- Affected products
- Unifi Os
- Ui Unifi Os Server
- < 5.0.8
- CVSS 3.1
- 10.0 CRITICAL
- EPSS
- 62.8% (99th percentile)
- Weakness
- CWE-22
- NVD status
- Analyzed
- Published
- 2026-05-22
CVE-2026-34909 at NVD
2 known exploits for CVE-2026-34909
Proof-of-concept code and exploit modules indexed by Sploitus