Riello UPS NetMan 208 Application before 1.12 allows cgi-bin/login.cgi username SQL Injection. For example, an attacker can delete the LOGINFAILEDTABLE table.
Metrics
Affected Vendors & Products
References
History
Fri, 02 Jan 2026 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:riello-ups:netman_208:*:*:*:*:*:*:*:* |
Mon, 29 Dec 2025 23:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Riello-ups
Riello-ups netman 208 |
|
| Vendors & Products |
Riello-ups
Riello-ups netman 208 |
Wed, 24 Dec 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 24 Dec 2025 19:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Riello UPS NetMan 208 Application before 1.12 allows cgi-bin/login.cgi username SQL Injection. For example, an attacker can delete the LOGINFAILEDTABLE table. | |
| Weaknesses | CWE-89 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: mitre
Published: 2025-12-24T19:37:14.535Z
Updated: 2025-12-24T20:03:44.090Z
Reserved: 2025-12-24T19:37:14.286Z
Link: CVE-2025-68914
Updated: 2025-12-24T20:03:38.350Z
Status : Analyzed
Published: 2025-12-24T20:16:08.347
Modified: 2026-01-02T18:14:11.633
Link: CVE-2025-68914
No data.