← العودة للجدول
CVE-2025-71318
CVE-2025-71318 — GHSA: NetMan 204 fails to enforce authentication on its administrative pages and command endpoints. A...
📅 2026-06-05
🔴 Critical 🔥 No GHSA Vulnerability Vulnerability CVSS 9.8

📋 الوصف الكامل

NetMan 204 fails to enforce authentication on its administrative pages and command endpoints. A remote, unauthenticated attacker can directly request administrative pages (such as administration.html, administration-commands.html, and configuration.html) to disclose sensitive information including LDAP configuration and active user details, and can invoke privileged UPS control commands — includ

💻 الأنظمة المتأثرة

GHSA: NetMan 204

⚠️ نوع التهديد

Vulnerability

🔗 CVE ID

CVE-2025-71318

📡 المصدر

GHSA

✅ الحلول والتخفيف

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ←