UniFi Wizard Installation Page Exposure Scanner
This scanner targets the UniFi Wizard installation page endpoint, checking if it remains accessible post-deployment. An attacker can exploit this to gain administrative control over network devices.
Short Info
Level
Single Scan
Single Scan
Can be used by
Asset Owner
Estimated Time
10 seconds
Time Interval
10 days 21 hours
Scan only one
URL
Toolbox
UniFi Wizard is a setup tool used by network administrators to configure UniFi network devices and controllers. It is widely deployed in environments like educational institutions, corporate offices, and large enterprises that require scalable network management. The wizard simplifies initial device configuration, ensuring optimal integration into existing network infrastructure.
The Installation Page Exposure vulnerability arises when the wizard's setup pages remain accessible after initial configuration. This typically occurs due to misconfigured access permissions or failure to disable the wizard post-deployment. Attackers can exploit this to view sensitive setup parameters or default credentials.
Specifically, the vulnerability involves the /wizard endpoint on UniFi controllers. If this endpoint is left open, unauthorized users can access the installation interface without authentication. The scanner checks for this endpoint's exposure by sending a request and analyzing the response for wizard-related content.
If exploited, an attacker can gain administrative access to the network, reconfigure devices, or intercept traffic. This can lead to data breaches, network downtime, or unauthorized control over critical infrastructure. The CVSS score of 8.0 reflects the high potential for severe impact.