Denial of Service attack in airMAX < 8.3.2 , airMAX < 6.0.7 and EdgeMAX < 1.9.7 allow attackers to use the Discovery Protocol in amplification attacks.
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HUi Airmax Ac
HWUiall versionsUi Airos
OSUi< 6.0.76.0.7 – 8.3.2 (excl.)Ui Edgemax
HWUiall versionsUi Edgemax Firmware
OSUi< 1.9.7
🟢
PATCH AVAILABLE
Vendor update available. Deploy in standard maintenance cycle.
Tags
DoS
Related vulnerabilities
CVE-2010-5330CRITICAL9.8⚠ KEVPL ✓same product
Command injection w Ubiquiti AirOS via stainfo.cgi (ifname)
CVE-2020-8234CRITICAL9.8PL ✓same product
Możliwość odgadnięcia cookie SIDSSL w EdgeSwitch umożliwia RCE jako root
CVE-2020-8171CRITICAL9.8PL ✓same product
Command Injection / RCE w firmware Ubiquiti AirMax AirOS
CVE-2015-9266CRITICAL9.8PL ✓same product
Ubiquiti airMAX/airFiber/EdgeSwitch XP — path traversal umożliwia zapis plików jako root
CVE-2026-21639HIGH8.8same product
A malicious actor in Wi-Fi range of the affected product could leverage a vulnerability in the airMAX Wireless...