Stored Cross-site Scripting reported in Intelligent Power Manager v1
Vulnerability Description
Eaton Intelligent Power Manager (IPM) prior to 1.70 is vulnerable to stored Cross site scripting. The vulnerability exists due to insufficient validation of input from certain resources by the IPM software. The attacker would need access to the local Subnet and an administrator interaction to compromise the system
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2021-23282
Credits & Attribution
No credits recorded in the NVD database.
More from Eaton
View All →Affected Vendor
Eaton
View all reports →