Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
CRITICAL 9.9
CVE-2026-22619
Eaton Intelligent Power Protector (IPP) is affected by insecure library loading in its executable, which could lead to arbitrary code execution by an…
Intelligent Power Protector
2.00+
HIGH 7.1
CVE-2026-22618
A security misconfiguration was identified in Eaton Intelligent Power Protector (IPP), where an HTTP response header was set with an insecure attribu…
Intelligent Power Protector
2.00+
HIGH 7.4
CVE-2026-22617
Eaton Intelligent Power Protector (IPP) uses an insecure cookie configuration, which could allow a network‑based attacker to intercept the cookie and…
Intelligent Power Protector
2.00+
HIGH 7.5
CVE-2026-22616
Eaton Intelligent Power Protector (IPP) software allows repeated authentication attempts against the web interface login page due to insufficient rat…
Intelligent Power Protector
2.00+
HIGH 7.2
CVE-2026-22615
Due to improper
input validation in one of the Eaton Intelligent Power Protector (IPP) XML, it is
possible for an attacker with admin privileges and …
Intelligent Power Protector
2.00+
MEDIUM 6.1
CVE-2026-22614
The encryption mechanism used in Eaton's EasySoft project file was insecure and susceptible to brute force attacks, an attacker with access to this f…
Easysoft
8.41+
HIGH 8.6
CVE-2025-59887
Improper authentication of library files in the Eaton UPS Companion software installer could lead to arbitrary code execution of an attacker with the…
Ups Companion
3.0+
HIGH 7.8
CVE-2025-67450
Due to insecure library loading in the Eaton UPS Companion software executable, an attacker with access to the software package
could perform arbit…
Ups Companion
3.0+
MEDIUM 6.7
CVE-2025-59888
Improper quotation in search paths in the Eaton UPS Companion software installer could lead to arbitrary code execution of an attacker with the acces…
Ups Companion
3.0+
HIGH 8.8
CVE-2025-59886
Improper input validation at one of the endpoints of Eaton xComfort ECI's
web interface, could lead into an attacker with network access to the dev…
Xcomfort Ethernet Communication Interface
Mitigation only
MEDIUM 6.5
CVE-2024-31416
The Eaton Foreseer software provides multiple customizable input fields for the users to configure parameters in the tool like alarms, reports, etc. …
Foreseer Electrical Power Monitoring System
7.8.600+
HIGH 8.1
CVE-2024-31415
The Eaton Foreseer software provides the feasibility for the user to configure external servers for multiple purposes such as network management, use…
Foreseer Electrical Power Monitoring System
7.8.600+
MEDIUM 6.1
CVE-2024-31414
The Eaton Foreseer software provides users the capability to customize the dashboard in WebView pages. However, the input fields for this feature in …
Foreseer Electrical Power Monitoring System
7.8.600+
MEDIUM 6.6
CVE-2023-43776
Eaton easyE4 PLC offers a device password protection functionality to facilitate a secure connection and prevent unauthorized access. It was observed…
Easy Box E4 Ac1 Firmware
2.02+
MEDIUM 6.5
CVE-2023-43777
Eaton easySoft software is used to program easy controllers and displays for configuring, programming and defining parameters for all the intelligent…
Easysoft
8.01+
MEDIUM 5.3
CVE-2023-43775
Denial-of-service vulnerability in the web server of the Eaton SMP Gateway allows
attacker to potentially force an unexpected restart of the automa…
Smp Sg 4260 Firmware
8.0r9 / 8.1r5+
CRITICAL 9.8
CVE-2022-33859
A security vulnerability was discovered in the Eaton Foreseer EPMS software. Foreseer EPMS connects an operation’s vast array of devices to assist in…
Foreseer Electrical Power Monitoring System
7.6+
MEDIUM 5.4
CVE-2021-23283
Eaton Intelligent Power Protector (IPP) prior to version 1.69 is vulnerable to stored Cross Site Scripting. The vulnerability exists due to insuffici…
Intelligent Power Protector
1.69+
HIGH 8.0
CVE-2021-23286
Eaton Intelligent Power Manager Infrastructure (IPM Infrastructure) version 1.5.0plus205 and all prior versions are vulnerable to CSV Formula Injecti…
Intelligent Power Manager
after 1.5.0plus205
MEDIUM 5.4
CVE-2021-23287
The vulnerability exists due to insufficient validation of input of certain resources within the IPM software. This issue affects: Intelligent Power …
Intelligent Power Manager
1.70+
CRITICAL 10.0
CVE-2021-23281
Eaton Intelligent Power Manager (IPM) prior to 1.69 is vulnerable to unauthenticated remote code execution vulnerability. IPM software does not sanit…
Intelligent Power Manager
1.69+
CRITICAL 10.0
CVE-2021-23277
Eaton Intelligent Power Manager (IPM) prior to 1.69 is vulnerable to unauthenticated eval injection vulnerability. The software does not neutralize c…
Intelligent Power Manager
1.68 / 1.69+
CRITICAL 10.0
CVE-2021-23279EPSS 27%
Eaton Intelligent Power Manager (IPM) prior to 1.69 is vulnerable to unauthenticated arbitrary file delete vulnerability induced due to improper inpu…
Intelligent Power Manager
1.68 / 1.69+
CRITICAL 9.9
CVE-2021-23280
Eaton Intelligent Power Manager (IPM) prior to 1.69 is vulnerable to authenticated arbitrary file upload vulnerability. IPM’s maps_srv.js allows an a…
Intelligent Power Manager
1.68 / 1.69+
CRITICAL 9.6
CVE-2021-23278
Eaton Intelligent Power Manager (IPM) prior to 1.69 is vulnerable to authenticated arbitrary file delete vulnerability induced due to improper input …
Intelligent Power Manager
1.68 / 1.69+
HIGH 8.8
CVE-2021-23276
Eaton Intelligent Power Manager (IPM) prior to 1.69 is vulnerable to authenticated SQL injection. A malicious user can send a specially crafted packe…
Intelligent Power Manager
1.68 / 1.69+
HIGH 7.8
CVE-2020-6656
Eaton's easySoft software v7.xx prior to v7.22 are susceptible to file parsing type confusion remote code execution vulnerability. A malicious entity…
Easysoft
7.20+
HIGH 7.8
CVE-2020-6655
The Eaton's easySoft software v7.xx prior to v7.22 are susceptible to Out-of-bounds remote code execution vulnerability. A malicious entity can execu…
Easysoft
7.22+
HIGH 7.8
CVE-2020-6654
A DLL Hijacking vulnerability in Eaton's 9000x Programming and Configuration Software v 2.0.38 and prior allows an attacker to execute arbitrary code…
9000x Programming And Configuration Software
after 2.0.38
HIGH 7.8
CVE-2020-6652
Incorrect Privilege Assignment vulnerability in Eaton's Intelligent Power Manager (IPM) v1.67 & prior allow non-admin users to upload the system conf…
Intelligent Power Manager
after 1.67