Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-c2vv-8742-cw24

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Eaton Intelligent Power Manager (IPM) prior to 1.69 is vulnerable to authenticated SQL injection. A malicious user can send a specially crafted packet to exploit the vulnerability. Successful exploitation of this vulnerability can allow attackers to add users in the data base.

Eaton Intelligent Power Manager (IPM) prior to 1.69 is vulnerable to authenticated SQL injection. A malicious user can send a specially crafted packet to exploit the vulnerability. Successful exploitation of this vulnerability can allow attackers to add users in the data base.

EPSS

Процентиль: 29%
0.00103
Низкий

Дефекты

CWE-89

Связанные уязвимости

CVSS3: 7.1
nvd
почти 5 лет назад

Eaton Intelligent Power Manager (IPM) prior to 1.69 is vulnerable to authenticated SQL injection. A malicious user can send a specially crafted packet to exploit the vulnerability. Successful exploitation of this vulnerability can allow attackers to add users in the data base.

EPSS

Процентиль: 29%
0.00103
Низкий

Дефекты

CWE-89