Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Sat, 18 Apr 2026 08:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Improper Access Control Allowing Wi‑Fi AutoLink on Ethernet‑Only Adopted Devices |
Fri, 30 Jan 2026 01:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ui
Ui unifi Connect Ev Station Lite Ui unifi Connect Ev Station Lite Firmware |
|
| CPEs | cpe:2.3:h:ui:unifi_connect_ev_station_lite:-:*:*:*:*:*:*:* cpe:2.3:o:ui:unifi_connect_ev_station_lite_firmware:*:*:*:*:*:*:*:* |
|
| Vendors & Products |
Ui
Ui unifi Connect Ev Station Lite Ui unifi Connect Ev Station Lite Firmware |
Wed, 07 Jan 2026 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-284 |
Tue, 06 Jan 2026 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ubiquiti
Ubiquiti ev Station Lite |
|
| Vendors & Products |
Ubiquiti
Ubiquiti ev Station Lite |
Tue, 06 Jan 2026 00:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 05 Jan 2026 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An Improper Access Control could allow a malicious actor in Wi-Fi range to the EV Station Lite (v1.5.2 and earlier) to use WiFi AutoLink feature on a device that was only adopted via Ethernet. | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: hackerone
Published:
Updated: 2026-01-07T15:19:03.376Z
Reserved: 2026-01-01T15:00:02.338Z
Link: CVE-2026-21635
Updated: 2026-01-05T19:39:40.254Z
Status : Analyzed
Published: 2026-01-05T17:15:47.350
Modified: 2026-01-30T01:22:13.397
Link: CVE-2026-21635
No data.
OpenCVE Enrichment
Updated: 2026-04-18T08:30:35Z