Upload Privilege Escalation
CVE:
CVE-2025-41765
Product: Universal BACnet Routers (UBR)
Severity: Low 3.5
Published: 28.11.2025
Advisory:
Read the advisory
Guest accounts can upload content with privileges of user/admin by directly interacting with the wwwupload.cgi endpoint, which only checks if a session exists but not the role associated with it.
CWE: CWE-269:Improper Privilege Management