Ubiquiti EdgeMAX devices before 2.0.3 allow remote attackers to cause a denial of service (disk consumption) because *.cache files in /var/run/beaker/container_file/ are created when providing a valid length payload of 249 characters or fewer to the beaker.session.id cookie in a GET header. The attacker can use a long series of unique session IDs.
2019-09-25T20:15:11.120
2024-11-21T04:31:16.817
Modified
CVSSv3.1: 7.5 (HIGH)
AV:N/AC:L/Au:N/C:N/I:N/A:C
10.0
6.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | ui | er-x_firmware | < 2.0.3 | Yes |
Hardware | ui | er-x | - | No |
Operating System | ui | er-x-sfp_firmware | < 2.0.3 | Yes |
Hardware | ui | er-x-sfp | - | No |
Operating System | ui | ep-r6_firmware | < 2.0.3 | Yes |
Hardware | ui | ep-r6 | - | No |
Operating System | ui | erlite-3_firmware | < 2.0.3 | Yes |
Hardware | ui | erlite-3 | - | No |
Operating System | ui | erpoe-5_firmware | < 2.0.3 | Yes |
Hardware | ui | erpoe-5 | - | No |
Operating System | ui | er-8_firmware | < 2.0.3 | Yes |
Hardware | ui | er-8 | - | No |
Operating System | ui | erpro-8_firmware | < 2.0.3 | Yes |
Hardware | ui | erpro-8 | - | No |
Operating System | ui | ep-r8_firmware | < 2.0.3 | Yes |
Hardware | ui | ep-r8 | - | No |
Operating System | ui | er-4_firmware | < 2.0.3 | Yes |
Hardware | ui | er-4 | - | No |
Operating System | ui | er-6p_firmware | < 2.0.3 | Yes |
Hardware | ui | er-6p | - | No |
Operating System | ui | er-12_firmware | < 2.0.3 | Yes |
Hardware | ui | er-12 | - | No |
Operating System | ui | er-8-xg_firmware | < 2.0.3 | Yes |
Hardware | ui | er-8-xg | - | No |