SMB Attack Probability Score
34/100medium
Weighted: EPSS · CISA KEV · SMB stack prevalence · exploit maturity · CVSS vector
CVSS v3
9.9
EPSS (30d)
1.02%
SMB Exposure
62.5/100
Attack Vector
NETWORK
Complexity
LOW
Privileges
LOW
Affected Products
unifi
Remediation & References
What to do
👤Review local administrator privilegesmedium
This vulnerability enables privilege escalation from a standard user to admin/SYSTEM. Ensure users do not have local administrator rights on endpoints. Apply the principle of least privilege — standard users should not be local admins.
Official Patch & Advisory Sources
NVD Full Entry ↗Official vulnerability detail, CVSS vectors, CPE listEPSS Score ↗Exploit Prediction Scoring System — FIRST.orgMitre CVE ↗MITRE CVE Program official entry
Vendor & Exploit References
Scoring Methodology
SMB Attack Probability Score weights: EPSS exploit likelihood (35%), CISA KEV active exploitation (25%), SMB stack prevalence (20%), exploit maturity (10%), CVSS network vector complexity (10%). Impact scenarios are derived from software category and historical SMB incident patterns. Scores recompute daily.