Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Fri, 02 Jan 2026 20:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Nardamiteq upc2 Firmware
|
|
| CPEs | cpe:2.3:h:nardamiteq:upc2:-:*:*:*:*:*:*:* cpe:2.3:o:nardamiteq:upc2_firmware:1.17:*:*:*:*:*:*:* |
|
| Vendors & Products |
Nardamiteq upc2 Firmware
|
Thu, 18 Dec 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-352 | |
| Metrics |
cvssV3_1
|
Thu, 18 Dec 2025 10:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Nardamiteq
Nardamiteq upc2 |
|
| Vendors & Products |
Nardamiteq
Nardamiteq upc2 |
Wed, 17 Dec 2025 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | CSRF vulnerability in narda miteq Uplink Power Contril Unit UPC2 v.1.17 allows a remote attacker to execute arbitrary code via the Web-based management interface and specifically the /system_setup.htm, /set_clock.htm, /receiver_setup.htm, /cal.htm?..., and /channel_setup.htm endpoints | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-12-18T18:52:50.630Z
Reserved: 2025-12-08T00:00:00.000Z
Link: CVE-2025-66953
Updated: 2025-12-18T16:04:02.710Z
Status : Analyzed
Published: 2025-12-17T19:16:12.467
Modified: 2026-01-02T19:47:40.163
Link: CVE-2025-66953
No data.
OpenCVE Enrichment
Updated: 2025-12-18T09:57:02Z