High severity8.8NVD Advisory· Published Dec 17, 2025· Updated Jun 17, 2026
CVE-2025-66953
CVE-2025-66953
Description
CSRF vulnerability in narda miteq Uplink Power Contril Unit UPC2 v.1.17 allows a remote attacker to execute arbitrary code via the Web-based management interface and specifically the /system_setup.htm, /set_clock.htm, /receiver_setup.htm, /cal.htm?..., and /channel_setup.htm endpoints
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:o:nardamiteq:upc2_firmware:1.17:*:*:*:*:*:*:*
(expand)+ 1 more
- (no CPE)
- (no CPE)range: =1.17
Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.