Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2021-23286

Опубликовано: 18 апр. 2022
Источник: nvd
CVSS3: 5.7
CVSS3: 8
CVSS2: 7.9
EPSS Низкий

Описание

Eaton Intelligent Power Manager Infrastructure (IPM Infrastructure) version 1.5.0plus205 and all prior versions are vulnerable to CSV Formula Injection. This issue affects: Eaton Intelligent Power Manager Infrastructure (IPM Infrastructure) all version 1.5.0plus205 and prior versions.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:eaton:intelligent_power_manager:*:*:*:*:*:*:*:*
Версия до 1.5.0plus205 (включая)

EPSS

Процентиль: 27%
0.00096
Низкий

5.7 Medium

CVSS3

8 High

CVSS3

7.9 High

CVSS2

Дефекты

CWE-1236
CWE-1236

Связанные уязвимости

CVSS3: 8
github
почти 4 года назад

Eaton Intelligent Power Manager Infrastructure (IPM Infrastructure) version 1.5.0plus205 and all prior versions are vulnerable to CSV Formula Injection. This issue affects: Eaton Intelligent Power Manager Infrastructure (IPM Infrastructure) all version 1.5.0plus205 and prior versions.

EPSS

Процентиль: 27%
0.00096
Низкий

5.7 Medium

CVSS3

8 High

CVSS3

7.9 High

CVSS2

Дефекты

CWE-1236
CWE-1236