CVE-2025-41767
7.2MBS Solutions · UBR Series (UBR-01 Mk II, UBR-02, UBR-LON)
An update signature bypass vulnerability in the wwwupdate.cgi method of the UBR web interface allows a high-privileged remote attacker to compromise the device.
Executive summary
A critical update signature bypass vulnerability in the MBS Solutions UBR series allows high-privileged remote attackers to achieve full device compromise.
Vulnerability
This vulnerability involves the improper verification of cryptographic signatures within the wwwupdate.cgi method. It requires the attacker to possess high privileges to successfully exploit the flaw.
Business impact
The ability for an attacker to bypass signature verification during the update process poses a severe risk to device integrity and security. A successful exploit leads to total system compromise, potentially allowing for unauthorized persistent access, data theft, or complete control over the affected hardware. With a CVSS score of 7.2, this vulnerability represents a significant threat to operational availability and security posture.
Remediation
Immediate Action: Upgrade all affected MBS UBR devices to firmware version 6.0.1.0 or later as specified in the vendor advisory.
Proactive Monitoring: Review web interface access logs for unauthorized or suspicious calls to the wwwupdate.cgi endpoint.
Compensating Controls: Restrict access to the device management interface to trusted administrative IP addresses via firewall rules to minimize the attack surface.
Exploitation status
Public Exploit Available: No
Analyst recommendation
Given the potential for full system compromise, organizations utilizing the MBS UBR series must prioritize the application of the 6.0.1.0 firmware update. Ensure that administrative interfaces are not exposed to the public internet and that access is limited to authorized personnel to reduce the likelihood of a successful exploit.
Sources
Originally found and disclosed by Adrien Rey from Cyber Defense Campus Zurich, Daniel Hulliger from Armasuisse, per the CVE Program record.