VendorsRiello-upsnetman_208all versions
Vulnerabilities

Riello-ups Netman 208

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2025-68916
Riello UPS NetMan 208 Application before 1.12 allows cgi-bin/certsupload.cgi /../ directory traversal for file upload with resultant code execution.
Published 2025-12-24 · Analyzed
9.1EPSS 0.026
CVE-2025-68914
Riello UPS NetMan 208 Application before 1.12 allows cgi-bin/login.cgi username SQL Injection. For example, an attacker can delete the LOGINFAILEDTABLE table.
Published 2025-12-24 · Analyzed
6.5EPSS 0.002
CVE-2025-68915
Riello UPS NetMan 208 Application before 1.12 allows cgi-bin/loginbanner_w.cgi XSS via a crafted banner.
Published 2025-12-24 · Analyzed
5.5EPSS 0.002