MBS Double-A Profibus
- < V6_0_0_7
A stack buffer overflow vulnerability has been identified in the MBS Universal Gateway (UGW) web GUI, specifically in the UGW-A-Series and UGW-X-Series models, all running MBS Firmware prior to V6_0_0_7. This vulnerability allows remote attackers with user privileges to exploit the buffer overflow in the 'gdv-serverconfig' component, leading to arbitrary code execution with root privileges and full system access.
Exploitation of this vulnerability allows authenticated attackers to execute arbitrary code with root privileges on the affected system, potentially leading to a full system compromise.
Users are advised to update to MBS Firmware version V6_0_0_7, available at the MBS Firmware Update page.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.