Saturday, August 2, 2025
  • Home
  • About Us
  • Contact Us
  • Disclaimer
  • Privacy Policy
  • Terms & Conditions
marketibiza
  • Home
  • Auto insurance
  • Business insurance
  • Cyber insurance
  • Disability insurance
  • Health insurance
    • Life insurance
    • Insurance Law
    • Travel insurance
  • Contact Us
No Result
View All Result
marketibiza
  • Home
  • Auto insurance
  • Business insurance
  • Cyber insurance
  • Disability insurance
  • Health insurance
    • Life insurance
    • Insurance Law
    • Travel insurance
  • Contact Us
No Result
View All Result
marketibiza
No Result
View All Result
Home Cyber insurance

Ubiquity UniFi Shield Flaws: CVE-2025-23123 Patch Urged

admin by admin
2025年5月14日
in Cyber insurance
12
Ubiquity UniFi Shield Flaws: CVE-2025-23123 Patch Urged
74
SHARES
1.2k
VIEWS
Share on FacebookShare on Twitter


You might also like

State-aligned APT teams are more and more deploying ransomware – and that’s unhealthy information for everybody

Hassan Letter Questions Elon Musk On Starlink Rip-off Use

Provide chain assault compromises npm packages to unfold backdoor malware

Ubiquity has disclosed two safety vulnerabilities affecting its broadly used video surveillance platform, UniFi Shield. One of many flaws, now assigned the identifier CVE-2025-23123, has been rated as crucial with a most CVSS rating of 10.0. Each points have been addressed in latest firmware and utility updates, and the corporate is urging customers to put in these patches directly. 

The vulnerabilities had been detailed in Security Advisory Bulletin 047, revealed by Ubiquity on Could 6, 2025. In accordance with the bulletin, attackers who achieve entry to the administration community of Ubiquity UniFi Shield programs may exploit the failings to execute malicious code or keep unauthorized entry to video livestreams, even after hyperlinks are supposedly disabled. 

CVE-2025-23123: Vital Distant Code Execution Vulnerability 

CVE-2025-23123

The extra extreme of the 2 points, CVE-2025-23123, impacts UniFi Shield Cameras working firmware model 4.75.43 and earlier. This vulnerability permits a distant attacker with inner community entry to set off a heap-based buffer overflow, enabling the execution of arbitrary code. The flaw is classed as a Remote Code Execution (RCE) risk and poses cybersecurity dangers for enterprise environments. 

“This vulnerability is very harmful due to its low complexity and the absence of person interplay wanted to use it,” Ubiquity famous.

The CVSS v3.0 vector for this flaw is AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H, which confirms that the vulnerability may be exploited over the community with out authentication or person intervention. 

Persistent Livestream Entry 

The second vulnerability, recognized as CVE-2025-23164, impacts the Ubiquity UniFi Shield Software model 5.3.41 and earlier. This flaw stems from a misconfigured entry token mechanism, which may permit a person to retain entry to a livestream after the unique “Share Livestream” hyperlink has been disabled.  





Your browser does not support the video tag.

Though this vulnerability is rated as medium with a CVSS score of 4.4, it still poses privacy and surveillance considerations, particularly for customers sharing safety digital camera entry. Ubiquity attributes this discovery to safety researcher Mike S. Schonert and has resolved the problem in model 5.3.45 of the UniFi Shield utility. 

Updates and Fixes Launched 

To handle these vulnerabilities, Ubiquity has launched the next updates: 

  • UniFi Shield Cameras 4.75.62: This replace resolves the crucial RCE concern and contains efficiency enhancements like improved Discuss Again resiliency and extra correct car detection for G6 fashions. A bug inflicting failure in highlight activation after goal detection was additionally mounted. 
  • UniFi Shield Software 5.3.45: Alongside the safety patch, this model contains enhancements to cloud archiving UX, doorbell quantity controls, and a bug repair for incorrect camera reassignment following an AI port restart. 

Regardless of these enhancements, Ubiquity did notice a recognized concern: Hallway mode streaming in HDR-disabled settings is at present not performing on G5-Professional fashions. 

Customers are strongly urged to replace their Ubiquity UniFi programs instantly, as unpatched gadgets—particularly these on uncovered or partially secured networks—may be exploited by way of crucial vulnerabilities like this one, probably permitting attackers to install malware, conduct unauthorized surveillance, or entry broader community sources.

Associated

Media Disclaimer: This report relies on inner and exterior analysis obtained by way of numerous means. The knowledge offered is for reference functions solely, and customers bear full duty for his or her reliance on it. The Cyber Express assumes no legal responsibility for the accuracy or penalties of utilizing this info.

Share30Tweet19
admin

admin

Recommended For You

State-aligned APT teams are more and more deploying ransomware – and that’s unhealthy information for everybody

by admin
2025年8月1日
4
State-aligned APT teams are more and more deploying ransomware – and that’s unhealthy information for everybody

The blurring of strains between cybercrime and state-sponsored assaults underscores the more and more fluid and multifaceted nature of right now’s cyberthreats 07 Jan 2025  •  , 5...

Read more

Hassan Letter Questions Elon Musk On Starlink Rip-off Use

by admin
2025年7月31日
2
Hassan Letter Questions Elon Musk On Starlink Rip-off Use

U.S. Senator Maggie Hassan has raised issues over the alleged use of SpaceX’s Starlink satellite web service by transnational prison networks working rip-off compounds in Southeast Asia. In a...

Read more

Provide chain assault compromises npm packages to unfold backdoor malware

by admin
2025年7月30日
3
Provide chain assault compromises npm packages to unfold backdoor malware

“Slightly than working to compromise one firm and being unsure of the payoff, menace actors can compromise one developer and find yourself with their malware in tons of,...

Read more

From pew-pew to pwned • Graham Cluley

by admin
2025年7月30日
0
From pew-pew to pwned • Graham Cluley

In episode 425 of “Smashing Safety”, Graham reveals how “Name of Obligation: WWII” has been weaponised – permitting hackers to hijack your whole PC throughout on-line matches, due...

Read more

Cybersecurity Is Damaged And Zero Belief Alone Gained’t Repair It

by admin
2025年7月29日
0
Cybersecurity Is Damaged And Zero Belief Alone Gained’t Repair It

Within the dependent world on digital infrastructure, cyber safety has change into the cornerstone of organizational flexibility. However, regardless of the billions spent on refined techniques and techniques,...

Read more
Next Post
New Report Finds Investing in Resilience Saves Jobs and Incomes

Allstate supplies prospects over $37 billion to get well from losses

Comments 12

  1. Kaden Lester says:
    3 months ago

    For the reason that the admin of this site is working, no uncertainty very quickly it will be renowned, due to its quality contents.

    Reply
  2. Cherish Velez says:
    3 months ago

    I’m often to blogging and i really appreciate your content. The article has actually peaks my interest. I’m going to bookmark your web site and maintain checking for brand spanking new information.

    Reply
  3. Sylvia Burns says:
    3 months ago

    There is definately a lot to find out about this subject. I like all the points you made

    Reply
  4. Aleena Forbes says:
    3 months ago

    This is really interesting, You’re a very skilled blogger. I’ve joined your feed and look forward to seeking more of your magnificent post. Also, I’ve shared your site in my social networks!

    Reply
  5. Kaden Lester says:
    3 months ago

    For the reason that the admin of this site is working, no uncertainty very quickly it will be renowned, due to its quality contents.

    Reply
  6. Dominik Li says:
    3 months ago

    Great information shared.. really enjoyed reading this post thank you author for sharing this post .. appreciated

    Reply
  7. Liam Jacobs says:
    3 months ago

    I do not even understand how I ended up here, but I assumed this publish used to be great

    Reply
  8. Giada Blevins says:
    3 months ago

    I very delighted to find this internet site on bing, just what I was searching for as well saved to fav

    Reply
  9. Aliyah Cline says:
    3 months ago

    You’re so awesome! I don’t believe I have read a single thing like that before. So great to find someone with some original thoughts on this topic. Really.. thank you for starting this up. This website is something that is needed on the internet, someone with a little originality!

    Reply
  10. Chad Smith says:
    3 months ago

    I like the efforts you have put in this, regards for all the great content.

    Reply
  11. Maximo Fields says:
    3 months ago

    This is my first time pay a quick visit at here and i am really happy to read everthing at one place

    Reply
  12. ⚙ + 1.207427 BTC.GET - https://yandex.com/poll/5JjqQt7R61CTYdYVd17t6p?hs=7aafa8c68071db4ba4037cf74825a838& ⚙ says:
    3 months ago

    j5jev6

    Reply

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Browse by Category

  • Auto insurance
  • Business insurance
  • Cyber insurance
  • Disability insurance
  • Health insurance
  • Insurance Law
  • Life insurance
  • Travel insurance

Trending News

Gallagher experiences sturdy monetary leads to Q2

Gallagher experiences sturdy monetary leads to Q2

2025年8月1日
Motorbike Leases in Hong Kong 2025 | Steps, Prices, and Precautions for Motorbike Leases | Really helpful Rental Platforms

Motorbike Leases in Hong Kong 2025 | Steps, Prices, and Precautions for Motorbike Leases | Really helpful Rental Platforms

2025年8月1日
State-aligned APT teams are more and more deploying ransomware – and that’s unhealthy information for everybody

State-aligned APT teams are more and more deploying ransomware – and that’s unhealthy information for everybody

2025年8月1日
Courtroom Guidelines In opposition to SEC’s Huge Surveillance Software — SEC Roundup

Courtroom Guidelines In opposition to SEC’s Huge Surveillance Software — SEC Roundup

2025年8月1日

How A lot Is $650,000 In No Examination Time period Life Insurance coverage?

2025年7月31日
Hassan Letter Questions Elon Musk On Starlink Rip-off Use

Hassan Letter Questions Elon Musk On Starlink Rip-off Use

2025年7月31日
Watch road artists create beautiful motorsport mural to have a good time Adrian Flux Area legends

Watch road artists create beautiful motorsport mural to have a good time Adrian Flux Area legends

2025年7月31日

Market Biz

Welcome to Marketi Biza The goal of Marketi Biza is to give you the absolute best news sources for any topic! Our topics are carefully curated and constantly updated as we know the web moves fast so we try to as well.

CATEGORIES

  • Auto insurance
  • Business insurance
  • Cyber insurance
  • Disability insurance
  • Health insurance
  • Insurance Law
  • Life insurance
  • Travel insurance

Recent News

Gallagher experiences sturdy monetary leads to Q2

Gallagher experiences sturdy monetary leads to Q2

2025年8月1日
Motorbike Leases in Hong Kong 2025 | Steps, Prices, and Precautions for Motorbike Leases | Really helpful Rental Platforms

Motorbike Leases in Hong Kong 2025 | Steps, Prices, and Precautions for Motorbike Leases | Really helpful Rental Platforms

2025年8月1日
  • Home
  • About Us
  • Contact Us
  • Disclaimer
  • Privacy Policy
  • Terms & Conditions

Copyright © 2023 Market Biz All Rights Reserved.

No Result
View All Result
  • Home
  • Auto insurance
  • Business insurance
  • Cyber insurance
  • Disability insurance
  • Health insurance
  • Insurance Law
  • Life insurance
  • Travel insurance
  • Contact Us

Copyright © 2023 Market Biz All Rights Reserved.

Are you sure want to unlock this post?
Unlock left : 0
Are you sure want to cancel subscription?