Janitza UMG 96RM-E 24V和Janitza UMG 96RM-E 230V都是德国Janitza公司的一个多功能电能质量分析仪。 Janitza UMG 96RM-E 24V和Janitza UMG 96RM-E 230V存在安全漏洞,该漏洞源于Web服务器权限分配不当,可能导致未经身份验证的远程攻击者诱骗用户上传特制HTML文件以获取设备敏感信息。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Janitza | UMG 96RM-E 24V(5222063) | 0.0 ~ 3.13 | - |
|
| Janitza | UMG 96RM-E 230V(5222062) | 0.0 ~ 3.13 | - |
|
| Weidmueller | ENERGY METER 750-230 (2540910000) | 0.0 ~ 3.13 | - |
|
| Weidmueller | ENERGY METER 750-24 (2540900000) | 0.0 ~ 3.13 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-41709 | 9.8 CRITICAL | Command injection in power analyzer via Modbus-TCP and Modbus-RTU |
| CVE-2025-41710 | 6.5 MEDIUM | Use of Hard-coded Credentials in power analyzer |
| CVE-2025-41711 | 5.3 MEDIUM | Use of a Broken or Risky Cryptographic Algorithm for firmware images of power analyzer |
No comments yet