An Improper Access Control could allow a malicious actor authenticated in the API of certain UniFi Connect Display Cast devices to make unsupported changes to the system. Affected Products: UniFi Connect Display Cast (Version 1.10.3 and earlier) UniFi Connect Display Cast Pro (Version 1.0.89 and earlier) UniFi Connect Display Cast Lite (Version 1.0.3 and earlier) Mitigation: Update UniFi Connect Display Cast to Version 1.10.7 or later Update UniFi Connect Display Cast Pro to Version 1.0.94 or later Update UniFi Connect Display Cast Lite to Version 1.1.8 or later
History

Thu, 21 Aug 2025 00:30:00 +0000

Type Values Removed Values Added
Description An Improper Access Control could allow a malicious actor authenticated in the API of certain UniFi Connect Display Cast devices to make unsupported changes to the system. Affected Products: UniFi Connect Display Cast (Version 1.10.3 and earlier) UniFi Connect Display Cast Pro (Version 1.0.89 and earlier) UniFi Connect Display Cast Lite (Version 1.0.3 and earlier) Mitigation: Update UniFi Connect Display Cast to Version 1.10.7 or later Update UniFi Connect Display Cast Pro to Version 1.0.94 or later Update UniFi Connect Display Cast Lite to Version 1.1.8 or later
References

cve-icon MITRE

Status: PUBLISHED

Assigner: hackerone

Published: 2025-08-21T00:01:24.190Z

Updated: 2025-08-21T00:01:24.190Z

Reserved: 2025-02-20T01:00:01.799Z

Link: CVE-2025-27215

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2025-08-21T01:15:35.773

Modified: 2025-08-21T01:15:35.773

Link: CVE-2025-27215

cve-icon Redhat

No data.