CVE-2025-71318

CRITICAL

NetMan 204 Missing Authentication for Administrative Functions

Title source: cna
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2025-71318. PoCs published by Parsa Rezaie Khiabanloo.

AI-analyzed exploit summary This writeup details an authentication bypass vulnerability in Netman 204 UPS panels, exposing hardcoded credentials and unauthenticated access to administrative endpoints. It includes technical details on exploiting the flaw via crafted URLs and Burp Suite.

Description

NetMan 204 fails to enforce authentication on its administrative pages and command endpoints. A remote, unauthenticated attacker can directly request administrative pages (such as administration.html, administration-commands.html, and configuration.html) to disclose sensitive information including LDAP configuration and active user details, and can invoke privileged UPS control commands — including shutdown, reboot, switch-on-bypass, and battery test — without supplying any credentials.

Exploits (1)

exploitdb WRITEUP
by Parsa Rezaie Khiabanloo · texthardwaremultiple
https://www.exploit-db.com/exploits/52183

This writeup details an authentication bypass vulnerability in Netman 204 UPS panels, exposing hardcoded credentials and unauthenticated access to administrative endpoints. It includes technical details on exploiting the flaw via crafted URLs and Burp Suite.

Classification
Writeup 90%
Attack Type
Auth Bypass
Complexity
Trivial
Reliability
Reliable
Target: Netman 204 UPS panel
No auth needed
Prerequisites: Network access to the target UPS panel
devstral-2 · analyzed Jun 06, 2026 Full analysis →

References (3)

Core 3
Core References
Exploit exploit
Exploit-DB
https://www.exploit-db.com/exploits/52183
Third Party Advisory third-party-advisory
VulnCheck Advisory: NetMan 204 Missing Authentication for Administrative Functions
https://www.vulncheck.com/advisories/netman-204-missing-authentication-for-administrative-functions

Scores

CVSS v3 9.8
EPSS 0.0020
EPSS Percentile 42.5%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation poc
Automatable yes
Technical Impact total

Details

CWE
CWE-306
Status published
Products (1)
Riello UPS/NetMan 204
Published Jun 05, 2026
Tracked Since Jun 06, 2026