Awarded $25,000 (max bounty) by Ubiquiti for a Remote Code Execution (RCE) in UniFi Access Application via
@Hacker0x01.
CVE: CVE-2025-52665 (assigned).
Patch is live →
community.ui.com/releases/Se…
Huge thanks to the Ubiquiti security team.
Full research will be published by the Catchify team.
⚠️ Update your systems now.
الحمد لله
تم منحي أعلى مكافأة 25,000$ من Ubiquiti نظير ثغرة RCE في UniFi Access Application عبر
@Hacker0x01.
رقم الثغرة (CVE): CVE-2025-52665.
البحث التفصيلي سينشره فريق Catchify قريبا.
⚠️ حدثوا أنظمتكم في نظام UniFi Access.
#InfoSec