Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2025-27615— umatiGateway's UI publicly accessible in provided docker-compose file

Quick assessment

Affected
umati umatiGateway
Exploitation
Public or AI PoC available; prioritize validation
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

umati Gateway是umati开源的一个使用 JSON 消息将 OPC UA 服务器与 MQTT 代理连接起来的工具。 umati Gateway存在信息泄露漏洞,该漏洞源于用户界面允许公开访问,可能导致配置被查看和修改。

CVSS 8.2 · High EPSS 0.52% · P43

Possible ATT&CK Techniques 1 AI

T1190 · Exploit Public-Facing Application
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2025-27615

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
umatiGateway's UI publicly accessible in provided docker-compose file
Source: CVE Program / CVE List V5
Vulnerability Description
umatiGateway is software for connecting OPC Unified Architecture servers with an MQTT broker utilizing JSON messages. The user interface may possibly be publicly accessible with umatiGateway's provided docker-compose file. With this access, the configuration can be viewed and altered. Commit 5d81a3412bc0051754a3095d89a06d6d743f2b16 uses `127.0.0.1:8080:8080` to limit access to the local network. For those who are unable to use this proposed patch, a firewall on Port 8080 may block remote access, but the workaround may not be perfect because Docker may also bypass a firewall by its iptable based rules for port forwarding.
Source: CVE Program / CVE List V5
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:H
Source: CVE Program / CVE List V5
Vulnerability Type
信息暴露
Source: CVE Program / CVE List V5
Vulnerability Title
umati Gateway 信息泄露漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
umati Gateway是umati开源的一个使用 JSON 消息将 OPC UA 服务器与 MQTT 代理连接起来的工具。 umati Gateway存在信息泄露漏洞,该漏洞源于用户界面允许公开访问,可能导致配置被查看和修改。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

Vendor Product Affected Versions CPE Subscribe
umati umatiGateway < 5d81a3412bc0051754a3095d89a06d6d743f2b16 -

II. Public POCs for CVE-2025-27615

# POC Description Source Link Shenlong Link
AI-Generated POC Premium
Qwen3.6-35B-A3B · 5976 chars
Pro+ exclusive includes:
Vulnerability reproduction recording (real sandbox build + trigger, exclusive)
In-depth vulnerability mechanism
Trigger conditions & impact
Full executable POC code
Exploit chain & mitigation
POC zip download
100+ AI POC generations per month

III. Intelligence Information for CVE-2025-27615

登录查看更多情报信息。

Patches & Fixes for CVE-2025-27615 (2)

Vendor Advisories for CVE-2025-27615 (1)

Other References for CVE-2025-27615 (1)

IV. Related Vulnerabilities

V. Comments for CVE-2025-27615

No comments yet


Leave a comment