CVE-2025-23164

A misconfigured access token mechanism in the Unifi Protect Application (Version 5.3.41 and earlier) could permit the recipient of a "Share Livestream" link to maintain access to the corresponding livestream subsequent to such link becoming disabled.
Configurations

No configuration.

History

19 May 2025, 15:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-05-19 02:15

Updated : 2025-05-19 15:15


NVD link : CVE-2025-23164

Mitre link : CVE-2025-23164

CVE.ORG link : CVE-2025-23164


JSON object : View

Products Affected

No product.

CWE
CWE-284

Improper Access Control