Report: Latest: CVE-2019-25652 - UniFi Network Controller Improper Certificate Validation Leading to Credential T...

Report: Latest: CVE-2019-25652 - UniFi Network Controller Improper Certificate Validation Leading to Credential T...

CVE ID :CVE-2019-25652 Published : March 27, 2026, 9:19 p.m. | 33 minutes ago Description :UniFi Network Controller before version 5.10.22 and 5.11.x before 5.11.18 contains an improper certificate verification vulnerability that allows adjacent network attackers to conduct man-in-the-middle attacks by presenting a false SSL certificate during SMTP connections. Attackers can intercept SMTP traffic and obtain credentials by exploiting the insecure SSL host verification mechanism in the SMTP certificate validation process. Severity: 7.6 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Severity
HIGH
Published
March 27, 2026
Attack Vector: Network