UniFi Wizard Installation Page Exposure Scanner

This scanner targets the UniFi Wizard installation page endpoint, checking if it remains accessible post-deployment. An attacker can exploit this to gain administrative control over network devices.

Short Info


Level

High

Single Scan

Single Scan

Can be used by

Asset Owner

Estimated Time

10 seconds

Time Interval

10 days 21 hours

Scan only one

URL

Toolbox

UniFi Wizard is a setup tool used by network administrators to configure UniFi network devices and controllers. It is widely deployed in environments like educational institutions, corporate offices, and large enterprises that require scalable network management. The wizard simplifies initial device configuration, ensuring optimal integration into existing network infrastructure.

The Installation Page Exposure vulnerability arises when the wizard's setup pages remain accessible after initial configuration. This typically occurs due to misconfigured access permissions or failure to disable the wizard post-deployment. Attackers can exploit this to view sensitive setup parameters or default credentials.

Specifically, the vulnerability involves the /wizard endpoint on UniFi controllers. If this endpoint is left open, unauthorized users can access the installation interface without authentication. The scanner checks for this endpoint's exposure by sending a request and analyzing the response for wizard-related content.

If exploited, an attacker can gain administrative access to the network, reconfigure devices, or intercept traffic. This can lead to data breaches, network downtime, or unauthorized control over critical infrastructure. The CVSS score of 8.0 reflects the high potential for severe impact.

Get started to protecting your digital assets