CVE-2025-41761: Privilege escalation possible

Published Mar 9, 2026
·
Updated

A low‑privileged local attacker who gains access to the UBR service account (e.g., via SSH) can escalate privileges to obtain full system access. This is due to the service account being permitted to execute certain binaries (e.g., tcpdump and ip) with sudo.

Affected Software

4 affected components
All of the following
Mbs-solutions Universal Bacnet Router Firmware<6.0.1.0
Any of the following
Mbs-solutions Ubr-01 Mk Ii
Mbs-solutions Ubr-02
Mbs-solutions Ubr-lon

Event History

Mar 9, 2026
CVE Published
via MITRE·08:17 AM
Data Sourced
via MITRE·08:17 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·09:16 AM
DescriptionSeverityWeaknessAffected Software

Frequently Asked Questions

1

What is the severity of CVE-2025-41761?

CVE-2025-41761 is considered a low-severity vulnerability that allows privilege escalation for local attackers.

2

How do I fix CVE-2025-41761?

To mitigate CVE-2025-41761, restrict the permissions of the UBR service account to prevent unprivileged users from executing binaries with sudo.

3

Who is affected by CVE-2025-41761?

CVE-2025-41761 affects users of the Universal Bacnet Router Firmware versions up to 6.0.1.0.

4

What could an attacker gain from exploiting CVE-2025-41761?

An attacker exploiting CVE-2025-41761 can escalate privileges to achieve full system access on the targeted system.

5

What software is vulnerable in CVE-2025-41761?

CVE-2025-41761 specifically affects the Mbs-solutions Universal Bacnet Router Firmware prior to version 6.0.1.0.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203