CVE-2025-41760: Pass filter with Empty Table
An administrator may attempt to block all traffic by configuring a pass filter with an empty table. However, in UBR, an empty list does not enforce any restrictions and allows all network traffic to pass unfiltered.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-41760?
CVE-2025-41760 has been classified as a high severity vulnerability due to its potential to allow unrestricted network traffic.
How do I fix CVE-2025-41760?
To remediate CVE-2025-41760, ensure that pass filters are configured correctly with appropriate entries and avoid using an empty table.
What software is affected by CVE-2025-41760?
CVE-2025-41760 affects Mbs-solutions Universal Bacnet Router Firmware versions prior to 6.0.1.0.
Can CVE-2025-41760 be exploited remotely?
Yes, CVE-2025-41760 can be exploited remotely due to the lack of required restrictions on network traffic.
What is the potential impact of CVE-2025-41760?
The potential impact of CVE-2025-41760 includes unauthorized access to network resources and loss of data integrity.