Eaton Update
1735Warning Date
Severity Level
Warning Number
Target Sector
21 April, 2021
● High
2021-2807
Energy
Description:
Eaton has released security update to address multiple vulnerabilities in the following product :
- Intelligent Power Manager
- Eaton Intelligent Power Manager (IPM) – All versions prior to 1.69
- Eaton Intelligent Power Manager Virtual Appliance (IPM VA) – All versions prior to 1.69
- Eaton Intelligent Power Protector (IPP) – All versions prior to 1.68
Threats:
Attacker could exploit these vulnerabilities by doing the following:
- Improper input validation
- Execute arbitrary code
- SQL Injection
Best practice and Recommendations:
The CERT team encourages users to review Eaton security advisory and apply the necessary update: