Multiple Improper Input Validation vulnerabilities in UniFi Connect EV Station Lite may allow a Command Injection by a malicious actor with network ac...
Description
Multiple Improper Input Validation vulnerabilities in UniFi Connect EV Station Lite may allow a Command Injection by a malicious actor with network access to the UniFi Connect EV Station Lite. Aff...
AI Analyst Comment
Remediation
Update Multiple Improper Input Validation vulnerabilities in UniFi Connect EV Station Lite may allow a Command Injection by a malicious actor with network access to the UniFi Connect EV Station Multiple Products to the latest version. Monitor for exploitation attempts and review access logs.
---METADATA---
VENDOR: Ubiquiti Inc
PRODUCT: UniFi Connect EV Station Lite
AFFECTED_VERSIONS: 1.5.2
CONFIDENCE: high
MISSING: none
---END_METADATA---
Description Summary:
Multiple improper input validation vulnerabilities in the UniFi Connect EV Station Lite allow for remote command injection by attackers with network access.
Executive Summary:
A critical command injection vulnerability in the UniFi Connect EV Station Lite allows remote, unauthenticated attackers to execute arbitrary code on the device.
Vulnerability Details
CVE-ID: CVE-2025-24285
Affected Software: Ubiquiti Inc UniFi Connect EV Station Lite
Affected Versions: 1.5.2
Vulnerability: This vulnerability stems from improper input validation, enabling an attacker to perform command injection, which can lead to full system compromise.
Business Impact
The CVSS score of 9.8 reflects the severity of this vulnerability, as it allows for complete system takeover. An attacker who gains control of the EV station could potentially use the device as a pivot point for further attacks on the internal network, leading to broader data compromise.
Remediation Plan
Immediate Action: Apply the latest firmware update for the UniFi Connect EV Station Lite as specified by the vendor.
Proactive Monitoring: Monitor network traffic for unusual patterns or command-line activity originating from the EV charging station management interface.
Compensating Controls: Use a firewall or network access control list (ACL) to restrict access to the device management interface to authorized administrative IP addresses only.
Exploitation Status
Public Exploit Available: Unknown
Analyst Notes: As of Aug 22, 2025, there is no public information indicating active exploitation or a public proof-of-concept for this vulnerability. Command injection flaws are inherently dangerous as they typically result in remote code execution with the privileges of the application.
Analyst Recommendation
The severity of this vulnerability necessitates immediate patching of all affected UniFi Connect EV Station Lite devices. Network administrators should verify that these devices are not directly exposed to the public internet and limit administrative access to prevent potential exploitation.