A vulnerability, found in EdgeRouters Version 2.0.9-hotfix.5 and earlier and UniFi Security Gateways (USG) Version 4.4.56 and earlier with their DHCPv6 prefix delegation set to dhcpv6-stateless or dhcpv6-stateful, allows a malicious actor directly connected to the WAN interface of an affected device to create a remote code execution vulnerability.
2023-02-09T20:15:11.740
2025-03-24T19:15:41.460
Modified
CVSSv3.1: 8.8 (HIGH)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | ui | usg_firmware | < 4.4.57 | Yes |
Hardware | ui | usg | - | No |
Operating System | ui | usg-pro-4_firmware | < 4.4.57 | Yes |
Hardware | ui | usg-pro-4 | - | No |
Operating System | ui | er-10x_firmware | < 2.0.9 | Yes |
Operating System | ui | er-10x_firmware | 2.0.9 | Yes |
Operating System | ui | er-10x_firmware | 2.0.9 | Yes |
Operating System | ui | er-10x_firmware | 2.0.9 | Yes |
Operating System | ui | er-10x_firmware | 2.0.9 | Yes |
Hardware | ui | er-10x | - | No |
Operating System | ui | er-12_firmware | < 2.0.9 | Yes |
Operating System | ui | er-12_firmware | 2.0.9 | Yes |
Operating System | ui | er-12_firmware | 2.0.9 | Yes |
Operating System | ui | er-12_firmware | 2.0.9 | Yes |
Operating System | ui | er-12_firmware | 2.0.9 | Yes |
Hardware | ui | er-12 | - | No |
Operating System | ui | er-12p_firmware | < 2.0.9 | Yes |
Operating System | ui | er-12p_firmware | 2.0.9 | Yes |
Operating System | ui | er-12p_firmware | 2.0.9 | Yes |
Operating System | ui | er-12p_firmware | 2.0.9 | Yes |
Operating System | ui | er-12p_firmware | 2.0.9 | Yes |
Hardware | ui | er-12p | - | No |
Operating System | ui | er-4_firmware | < 2.0.9 | Yes |
Operating System | ui | er-4_firmware | 2.0.9 | Yes |
Operating System | ui | er-4_firmware | 2.0.9 | Yes |
Operating System | ui | er-4_firmware | 2.0.9 | Yes |
Operating System | ui | er-4_firmware | 2.0.9 | Yes |
Hardware | ui | er-4 | - | No |
Operating System | ui | er-6p_firmware | < 2.0.9 | Yes |
Operating System | ui | er-6p_firmware | 2.0.9 | Yes |
Operating System | ui | er-6p_firmware | 2.0.9 | Yes |
Operating System | ui | er-6p_firmware | 2.0.9 | Yes |
Operating System | ui | er-6p_firmware | 2.0.9 | Yes |
Hardware | ui | er-6p | - | No |
Operating System | ui | er-8-xg_firmware | < 2.0.9 | Yes |
Operating System | ui | er-8-xg_firmware | 2.0.9 | Yes |
Operating System | ui | er-8-xg_firmware | 2.0.9 | Yes |
Operating System | ui | er-8-xg_firmware | 2.0.9 | Yes |
Operating System | ui | er-8-xg_firmware | 2.0.9 | Yes |
Hardware | ui | er-8-xg | - | No |
Operating System | ui | er-x_firmware | < 2.0.9 | Yes |
Operating System | ui | er-x_firmware | 2.0.9 | Yes |
Operating System | ui | er-x_firmware | 2.0.9 | Yes |
Operating System | ui | er-x_firmware | 2.0.9 | Yes |
Operating System | ui | er-x_firmware | 2.0.9 | Yes |
Hardware | ui | er-x | - | No |
Operating System | ui | er-x-sfp_firmware | < 2.0.9 | Yes |
Operating System | ui | er-x-sfp_firmware | 2.0.9 | Yes |
Operating System | ui | er-x-sfp_firmware | 2.0.9 | Yes |
Operating System | ui | er-x-sfp_firmware | 2.0.9 | Yes |
Operating System | ui | er-x-sfp_firmware | 2.0.9 | Yes |
Hardware | ui | er-x-sfp | - | No |