Heatmiser Netmonitor 3.03 contains a hardcoded credentials vulnerability in the networkSetup.htm page with predictable admin login credentials. Attackers can access the device by using the hard-coded username 'admin' and password 'admin' in the hidden form input fields.
Metrics
Affected Vendors & Products
References
History
Fri, 13 Feb 2026 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Heatmiser
Heatmiser heatmiser Netmonitor |
|
| Vendors & Products |
Heatmiser
Heatmiser heatmiser Netmonitor |
Fri, 13 Feb 2026 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 12 Feb 2026 23:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Heatmiser Netmonitor 3.03 contains a hardcoded credentials vulnerability in the networkSetup.htm page with predictable admin login credentials. Attackers can access the device by using the hard-coded username 'admin' and password 'admin' in the hidden form input fields. | |
| Title | Heatmiser Netmonitor 3.03 - Hardcoded Credentials | |
| Weaknesses | CWE-798 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published: 2026-02-12T22:48:35.204Z
Updated: 2026-02-13T17:13:06.426Z
Reserved: 2026-02-12T14:34:13.027Z
Link: CVE-2019-25322
Updated: 2026-02-13T17:13:01.353Z
Status : Awaiting Analysis
Published: 2026-02-12T23:16:03.897
Modified: 2026-02-13T14:23:48.007
Link: CVE-2019-25322
No data.