CVE-2025-41761

HIGH

UBR Service - Privilege Escalation

Title source: llm
STIX 2.1

Description

A low‑privileged local attacker who gains access to the UBR service account (e.g., via SSH) can escalate privileges to obtain full system access. This is due to the service account being permitted to execute certain binaries (e.g., tcpdump and ip) with sudo.

Scores

CVSS v3 7.8
EPSS 0.0001
EPSS Percentile 1.4%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-88
Status published
Products (1)
mbs-solutions/universal_bacnet_router_firmware < 6.0.1.0
Published Mar 09, 2026
Tracked Since Mar 09, 2026