Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-23119


The use of the cyclic redundancy check (CRC) algorithm for integrity check during firmware update makes Ubiquiti airFiber AF2X Radio firmware version 3.2.2 and earlier vulnerable to firmware modification attacks. An attacker can conduct a man-in-the-middle (MITM) attack to modify the new firmware image and bypass the checksum verification.


Published

2023-02-02T17:17:55.517

Last Modified

2025-03-26T19:15:22.467

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 5.9 (MEDIUM)

Weaknesses
  • Type: Primary
    CWE-354
  • Type: Secondary
    CWE-354

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System ui af-2x_firmware < 3.2.2 Yes
Hardware ui af-2x - No

References