Impact
The issue is located in the /cgi-bin/wwwugw.cgi script of MBS‑Solutions X‑Serie Gateway firmware V6_00_05. It allows a remote authenticated user with the low‑privileged Standard role to invoke hidden network diagnostic methods – ugw‑ping and ugw‑traceroute – that are not exposed in the web UI. Because these commands expose IP addresses, routing tables, and other network topology information, an attacker can obtain sensitive data that may aid further attacks. The vulnerability exemplifies improper access control and information disclosure, matching CWE‑285.
Affected Systems
The affected systems are MBS‑Solutions X‑Serie Gateway routers running firmware version V6_00_05. The vulnerability is present in the web CGI interface of this firmware.
Risk and Exploitability
The attack vector requires remote authentication; a user must already possess valid credentials for the gateway and be assigned the Standard role. Once authenticated, the attacker can trigger the hidden diagnostic calls manually or via automated scripts. The EPSS score is < 1%, and the vulnerability is not listed in the CISA KEV catalog, so current exploitation likelihood is low. The CVSS score is 6.5, indicating a moderate impact that includes leakage of network configuration details, which could aid subsequent reconnaissance or network compromise if privileges are later escalated.
OpenCVE Enrichment