### [CVE-2019-5456](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-5456) ![](https://img.shields.io/static/v1?label=Product&message=UniFi&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Vulnerability&message=Man-in-the-Middle%20(CWE-300)&color=brighgreen) ### Description SMTP MITM refers to a malicious actor setting up an SMTP proxy server between the UniFi Controller version <= 5.10.21 and their actual SMTP server to record their SMTP credentials for malicious use later. ### POC #### Reference - https://hackerone.com/reports/519582 #### Github No PoCs found on GitHub currently.