Medium severity5.3NVD Advisory· Published Jan 5, 2026· Updated Jun 17, 2026
CVE-2026-21635
CVE-2026-21635
Description
An Improper Access Control could allow a malicious actor in Wi-Fi range to the EV Station Lite (v1.5.2 and earlier) to use WiFi AutoLink feature on a device that was only adopted via Ethernet.
Affected products
3- cpe:2.3:o:ui:unifi_connect_ev_station_lite_firmware:*:*:*:*:*:*:*:*Range: <1.6.1
- Range: <=1.5.2
- Range: 0
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.