Voltronicpower

    Dashboard / Vendors

    Products: 2
    Vulnerabilities: 31
    Known Exploited: 0
    19
    Critical Level Threats
    11
    High Level Threats
    1
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2026-44402

    Voltronic Power SNMP Web Pro 1.1 Unauthenticated RCE via upload.cgi

    Last Modified: Sep 04, 2026
    Published: Sep 04, 2026

    CVE-2026-22199

    Voltronic Power SNMP Web Pro 1.1 Path Traversal via upload.cgi

    Last Modified: Jul 14, 2026
    Published: Mar 13, 2026

    CVE-2026-22192

    Voltronic Power SNMP Web Pro 1.1 Authentication Bypass via localStorage

    Last Modified: Jul 14, 2026
    Published: Mar 13, 2026

    CVE-2025-65287

    An unauthenticated directory traversal vulnerability in cgi-bin/upload.cgi in SNMP Web Pro 1.1 allows a remote attacker to read arbitrary files. The CGI concatenates the user-supplied params directly onto the base path (/var/www/files/userScript/) using memcpy + strcat without validation or canonicalization, enabling ../ sequences to escape the intended directory. The download branch also echoes the unsanitized params into Content-Disposition, introducing header-injection risk.

    Last Modified: Dec 15, 2025
    Published: Dec 09, 2025

    CVE-2022-31491

    Voltronic Power ViewPower through 1.04-24215, ViewPower Pro through 2.0-22165, and PowerShield Netguard before 1.04-23292 allows a remote attacker to run arbitrary code via an unspecified web interface related to detection of a managed UPS shutting down. An unauthenticated attacker can use this to run arbitrary code immediately regardless of any managed UPS state or presence.

    Last Modified: Apr 15, 2026
    Published: Aug 22, 2025
    Items Per Page
    Voltronicpower Vulnerabilities & Security CVEs | CVE-DB