CVE-2021-23276
13.04.2021, 19:15
Eaton Intelligent Power Manager (IPM) prior to 1.69 is vulnerable to authenticated SQL injection. A malicious user can send a specially crafted packet to exploit the vulnerability. Successful exploitation of this vulnerability can allow attackers to add users in the data base.
Vendor | Product | Version |
---|---|---|
eaton | intelligent_power_manager | 𝑥 < 1.69 |
eaton | intelligent_power_manager_virtual_appliance | 𝑥 < 1.69 |
eaton | intelligent_power_protector | 𝑥 < 1.68 |
𝑥
= Vulnerable software versions
References