An unauthenticated remote attacker can obtain valid session tokens because they are exposed in plaintext within the URL parameters of the wwwupdate.cgi endpoint in UBR.
Affected vendor
mbs-solutionsAffected product
universal bacnet router firmwareCoverage
Single affected product entry
CVSS
7.5
HIGH
Published
Mar 9, 2026

