Showing 2 vulnerabilities on this page for NetMan 204

Signals CISA KEV Ransomware Nuclei
Riello UPS vulnerability results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

NetMan 204 Missing Authentication for Administrative Functions

NetMan 204 fails to enforce authentication on its administrative pages and command endpoints. A remote, unauthenticated attacker can directly request administrative pages (such as administration.html, administration-commands.html, and configuration.html) to disclose sensitive information including LDAP configuration and active user details, and can invoke privileged UPS control commands — including shutdown, reboot, switch-on-bypass, and battery test — without supplying any credentials.

CWE-306Jun 5, 2026
CVSS9.3v4.0EPSS0.533%PoCs1SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX

NetMan 204 Hard-coded Backdoor Credentials

NetMan 204 contains a hard-coded backdoor account with the username and password 'eurek' that grants administrative access. A remote, unauthenticated attacker can authenticate through the cgi-bin/login.cgi endpoint (for example /cgi-bin/login.cgi?username=eurek&password=eurek, which due to lax parameter validation can be shortened to /cgi-bin/login.cgi?username=eurek%20eurek) to obtain administrator privileges, allowing them to alter device configuration, enable the telnet/SSH services, and rese

CWE-798Jun 5, 2026
CVSS9.3v4.0EPSS0.432%PoCs1SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX