CVE-2018-5264

Ubiquiti UniFi 52 devices, when Hotspot mode is used, allow remote attackers to bypass intended restrictions on "free time" Wi-Fi usage by sending a /guest/s/default/ request to obtain a cookie, and then using this cookie in a /guest/s/default/login request with the byfree parameter.
References
Link Resource
https://www.red4sec.com/cve/unifi.txt Exploit Third Party Advisory
Configurations

Configuration 1


Information

Published : 2019-06-07 04:29

Updated : 2019-06-11 01:44


NVD link : CVE-2018-5264

Mitre link : CVE-2018-5264

Products Affected
No products.
CWE