CVE-2025-41765Disclosure(mbs-solutions / ubr-01_mk_ii)

LOWCVSS 9.1 · CRITICAL

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

Due to insufficient authorization enforcement, an unauthorized remote attacker can exploit the wwwupload.cgi endpoint to upload and apply arbitrary data. This includes, but is not limited to, contact images, HTTPS certificates, system backups for restoration, server peer configurations, and BACnet/SC server certificates and keys.

0.5/ 10 priority

Sources & remediation

Vendor / third-party advisories
Weakness type (CWE)
CWE-862

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • ubr-01_mk_ii
  • ubr-02
  • ubr-lon
  • universal_bacnet_router_firmware

Threat summary

  • 5 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 5 signals
  • Disclosure: 4 classified signals
  • General: 1 classified signal
  • Peaked 1d ago at 4 mentions (2026-03-09); latest day: 1
  • 5 total mentions across 2 days

Affected systems

Products
ubr-01_mk_iiubr-02ubr-lonuniversal_bacnet_router_firmware

1 version affected across 4 products

Deep dive

Activity timeline5 mentions / 2d
01234Mentions · 2026-03-09: 4Mentions · 2026-03-12: 1Technical Details · 2026-03-09: 4Technical Details · 2026-03-12: 103-0903-12
Signal classification2 categories
Disclosure
480.0%
General
120.0%
Referenced assets5 URLs
Classification over time
DateTotalLabels
2026-03-094
Disclosure3General1
2026-03-121
Disclosure1
Full discourse5 posts
  • CRAC Learning - Tech@cracbot
    Disclosure

    CVE-2025-41765 (CVSS:9.1, CRITICAL) is Analyzed. Due to insufficient authorization enforcement, an unauthorized remote attacker can exploit the wwwupload.cgi endpoint to..https://nvd.nist.gov/vuln/detail/CVE-2025-41765 #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre

    Post summary

    The post provides a brief disclosure of CVE‑2025‑41765, noting its critical severity and remote exploitation via the wwwupload.cgi endpoint, but offers no evidence of active attacks, code, or mitigation steps.

    0000062
    172 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2025-41765 Due to insufficient authorization enforcement, an unauthorized remote attacker can exploit the wwwupload.cgi endpoint to upload and apply arbitrary data. This include… https://www.cve.org/CVERecord?id=CVE-2025-41765

    Post summary

    The statement discloses CVE‑2025‑41765, outlining an authorization flaw that allows arbitrary data uploads via the wwwupload.cgi endpoint, without mentioning PoC, exploit tools, active use, or patches.

    00000125
    56.6K followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    General

    CVE-2025-41765 Unauthenticated Arbitrary File Upload Vulnerability in wwwupload.cgi Endpoint https://vulmon.com/vulnerabilitydetails?qid=CVE-2025-41765

    Post summary

    The entry provides a brief vulnerability description for CVE‑2025‑41765, noting an unauthenticated arbitrary file upload in wwwupload.cgi, but offers no PoC, exploit, patch, or active usage details.

    0000050
    4.0K followersView on X
  • The Hacker Wire@TheHackerWire
    Disclosure

    🔴 CVE-2025-41765 - Critical Due to insufficient authorization enforcement, an unauthorized remote attacker can exploit the wwwupload.cgi endpoint to upload and apply arbitrary data. This includes, but is not limited... https://www.thehackerwire.com/vulnerability/CVE-2025-41765/ https://t.co/jC75cnzbVj

    Post summary

    The post announces CVE-2025-41765 as a critical vulnerability in wwwupload.cgi that allows unauthorized data upload, but does not provide a PoC, exploit code, or patch information.

    0000082
    130 followersView on X
  • CVEFind.com@CveFindCom
    Disclosure

    [CVE-2025-41765: CRITICAL] Beware of cyber threats! Unauthorized access to wwwupload.cgi endpoint allows attackers to upload and apply arbitrary data like contact images and server certificates.#cve,CVE-2025-41765,#cybersecurity https://cvefind.com/CVE-2025-41765

    Post summary

    The tweet announces a critical vulnerability (CVE‑2025‑41765) that permits unauthorized upload of arbitrary data via the wwwupload.cgi endpoint, but it offers no PoC, exploit code, or patch details.

    0000067
    600 followersView on X
CPE platform detail4 entries

4 of 4 entries

PartVendorProductVersionTarget SWTarget HW
HWmbs-solutionsubr-01_mk_ii---
HWmbs-solutionsubr-02---
HWmbs-solutionsubr-lon---
OSmbs-solutionsuniversal_bacnet_router_firmware---

Explore more