Description
The ugw-logstop method allows a remote attacker with user privileges to terminate arbitrary processes due to insufficient validation of user-supplied input.
Published: 2026-06-03
Score: 7.2 High
EPSS: n/a
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

The ugw-logstop method in MBS firmware allows a remote attacker who possesses user-level credentials to terminate any running process by providing insufficiently validated input. The flaw stems from improper input validation (CWE-20), enabling the attacker to specify an arbitrary process name or identifier. Successful exploitation can result in the abrupt termination of essential services, disrupting system availability and potentially cascading into further system instability. While this vulnerability does not directly expose data, the denial of critical processes may impair operational integrity and business continuity.

Affected Systems

Affected vendors and products include MBS Double‑A Profibus and Double‑A x‑link, MBS Double‑X CAN, DALI, KNX, LON, M‑Bus, PROFINET, x‑link, as well as MBS Single‑A, Single‑X, and the various Triple‑X configurations such as KNX+DALI, KNX+LON, KNX+M‑Bus, PROFINET+DALI, PROFINET+KNX, PROFINET+LON, and PROFINET+M‑Bus. The specific affected firmware versions are not disclosed in the advisory, so all firmware variants should be assessed for the presence of the ugw‑logstop method.

Risk and Exploitability

The CVSS score of 7.2 indicates a high‑severity flaw that requires remote attackers to have user‑level access. The EPSS score is not available, so current exploitation probability cannot be quantified, and the vulnerability is not listed in CISA’s KEV catalog. Nevertheless, the presence of a remote API that accepts unvalidated input and terminates processes makes this a realistic target for organizations where users can execute the ugw‑logstop command. Exploitation would require the attacker to invoke the method with malicious parameters, leading to termination of critical processes and service disruption. The lack of a public exploit noted to date means defenders should assume the capability exists and treat the vulnerability as potentially exploitable.

Generated by OpenCVE AI on June 3, 2026 at 13:21 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Deploy the latest firmware revision that addresses the ugw‑logstop input validation flaw.
  • Configure strict access controls so that only administrators can invoke the ugw‑logstop command, removing it from normal user privileges.
  • Disable the ugw‑logstop functionality or replace it with a hard‑coded whitelist of allowed process identifiers, and monitor logs for unexpected termination attempts.

Generated by OpenCVE AI on June 3, 2026 at 13:21 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Wed, 03 Jun 2026 13:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Wed, 03 Jun 2026 12:30:00 +0000

Type Values Removed Values Added
Description The ugw-logstop method allows a remote attacker with user privileges to terminate arbitrary processes due to insufficient validation of user-supplied input.
Title Arbitrary process termination vulnerability in method ugw-logstop
First Time appeared Mbs
Mbs double A Profibus Firmware
Mbs double A X Link Firmware
Mbs double X Can Firmware
Mbs double X Dali Firmware
Mbs double X Knx Firmware
Mbs double X Lon Firmware
Mbs double X M Bus Firmware
Mbs double X Profinet Firmware
Mbs double X X Link Firmware
Mbs single A Firmware
Mbs single X Firmware
Mbs triple X Knx Dali Firmware
Mbs triple X Knx Lon Firmware
Mbs triple X Knx M Bus Firmware
Mbs triple X Profinet Dali Firmware
Mbs triple X Profinet Knx Firmware
Mbs triple X Profinet Lon Firmware
Mbs triple X Profinet M Bus Firmware
Weaknesses CWE-20
CPEs cpe:2.3:o:mbs:double_a_profibus_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:mbs:double_a_x_link_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:mbs:double_x_can_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:mbs:double_x_dali_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:mbs:double_x_knx_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:mbs:double_x_lon_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:mbs:double_x_m_bus_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:mbs:double_x_profinet_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:mbs:double_x_x_link_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:mbs:single_a_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:mbs:single_x_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:mbs:triple_x_knx_dali_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:mbs:triple_x_knx_lon_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:mbs:triple_x_knx_m_bus_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:mbs:triple_x_profinet_dali_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:mbs:triple_x_profinet_knx_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:mbs:triple_x_profinet_lon_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:mbs:triple_x_profinet_m_bus_firmware:*:*:*:*:*:*:*:*
Vendors & Products Mbs
Mbs double A Profibus Firmware
Mbs double A X Link Firmware
Mbs double X Can Firmware
Mbs double X Dali Firmware
Mbs double X Knx Firmware
Mbs double X Lon Firmware
Mbs double X M Bus Firmware
Mbs double X Profinet Firmware
Mbs double X X Link Firmware
Mbs single A Firmware
Mbs single X Firmware
Mbs triple X Knx Dali Firmware
Mbs triple X Knx Lon Firmware
Mbs triple X Knx M Bus Firmware
Mbs triple X Profinet Dali Firmware
Mbs triple X Profinet Knx Firmware
Mbs triple X Profinet Lon Firmware
Mbs triple X Profinet M Bus Firmware
References
Metrics cvssV3_1

{'score': 8.1, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H'}

cvssV4_0

{'score': 7.2, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:H/VA:H/SC:N/SI:N/SA:N'}


Subscriptions

Mbs Double A Profibus Firmware Double A X Link Firmware Double X Can Firmware Double X Dali Firmware Double X Knx Firmware Double X Lon Firmware Double X M Bus Firmware Double X Profinet Firmware Double X X Link Firmware Single A Firmware Single X Firmware Triple X Knx Dali Firmware Triple X Knx Lon Firmware Triple X Knx M Bus Firmware Triple X Profinet Dali Firmware Triple X Profinet Knx Firmware Triple X Profinet Lon Firmware Triple X Profinet M Bus Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: CERTVDE

Published:

Updated: 2026-06-03T12:43:15.993Z

Reserved: 2026-04-01T08:28:27.141Z

Link: CVE-2026-35081

cve-icon Vulnrichment

Updated: 2026-06-03T12:43:12.493Z

cve-icon NVD

Status : Received

Published: 2026-06-03T13:16:20.587

Modified: 2026-06-03T13:16:20.587

Link: CVE-2026-35081

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-06-03T13:30:26Z

Weaknesses