Description
An information disclosure vulnerability in the opcua-configuration method of /cgi-bin/wwwugw.cgi in MBS-Solutions X-Serie Gateway firmware V6_00_05 allows any remote authenticated user, including users with the low-privileged Standard role, to retrieve the configured OPC-UA authentication credentials in cleartext via the JSON API response.
Published: 2026-09-04
Score: 6.5 Medium
EPSS: < 1% Very Low
KEV: No
Impact: Information Disclosure of OPC‑UA credentials
Action: Apply patch
AI Analysis

Impact

The vulnerability allows any authenticated user, even with low privileges, to obtain the OPC‑UA authentication credentials in clear text from the JSON response of the opcua-configuration method in /cgi-bin/wwwugw.cgi. The disclosure of these credentials compromises confidentiality of the authentication mechanism. Based on the description, it is inferred that an attacker could use the exposed credentials to access the OPC‑UA service and potentially perform unauthorized operations. However, the CVE description does not explicitly state the extent of impact beyond credential disclosure.

Affected Systems

The flaw exists in the firmware of MBS‑Solutions X‑Serie Gateway, version V6_00_05. No other firmware versions were explicitly mentioned in the advisories.

Risk and Exploitability

Because the attack requires only remote authentication and can be carried out by low‑privileged users, the risk to operators who depend on OPC‑UA is significant. The EPSS score of 0.292% (0.00292) indicates that the likelihood of exploitation is low, and the vulnerability is not listed in the KEV catalog, but the exposure of credentials is a high‑impact security issue that could be exploited in environments with an active OPC‑UA service. Additionally, the CVSS score of 6.5 categorizes this vulnerability as medium severity.

Generated by OpenCVE AI on September 10, 2026 at 04:56 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade the MBS‑Solutions X‑Serie Gateway firmware to version V6_00_06 or later when the vendor releases a patch addressing the credential disclosure.
  • Restrict HTTP/JSON API access for /cgi-bin/wwwugw.cgi to trusted internal networks or secure VPNs, and disable the endpoint if it is not required.
  • Implement network segmentation or firewall rules to isolate OPC‑UA traffic from other services, reducing the exposure of credentials.

Generated by OpenCVE AI on September 10, 2026 at 04:56 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 10 Sep 2026 10:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Thu, 10 Sep 2026 05:15:00 +0000

Type Values Removed Values Added
Title OPC‑UA Credential Disclosure via JSON API in MBS‑Solutions X‑Serie Gateway

Wed, 09 Sep 2026 20:30:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 6.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N'}


Mon, 07 Sep 2026 08:45:00 +0000

Type Values Removed Values Added
First Time appeared Mbs-solutions
Mbs-solutions x-serie Gateway
Vendors & Products Mbs-solutions
Mbs-solutions x-serie Gateway

Fri, 04 Sep 2026 18:15:00 +0000

Type Values Removed Values Added
Title OPC‑UA Credential Disclosure via JSON API in MBS‑Solutions X‑Serie Gateway
Weaknesses CWE-200

Fri, 04 Sep 2026 15:45:00 +0000

Type Values Removed Values Added
Description An information disclosure vulnerability in the opcua-configuration method of /cgi-bin/wwwugw.cgi in MBS-Solutions X-Serie Gateway firmware V6_00_05 allows any remote authenticated user, including users with the low-privileged Standard role, to retrieve the configured OPC-UA authentication credentials in cleartext via the JSON API response.
References

Subscriptions

Mbs-solutions X-serie Gateway
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2026-09-09T19:52:18.987Z

Reserved: 2026-08-17T00:00:00.000Z

Link: CVE-2026-75162

cve-icon Vulnrichment

Updated: 2026-09-09T19:51:40.496Z

cve-icon NVD

Status : Deferred

Published: 2026-09-04T16:17:58.097

Modified: 2026-09-09T20:20:33.937

Link: CVE-2026-75162

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-10T05:00:09Z

Weaknesses
  • CWE-200

    Exposure of Sensitive Information to an Unauthorized Actor