CRITICAL
Local file inclusion in Eaton Intelligent Power Manager v1.6 allows an attacker to include a file via server/node_upgrade_srv.js directory traversal with the firmware parameter in a downloadFirmware action
Published Jun 7, 2018
9.8
CRITICALCVSS 3.0
EPSS 19.76%
Description
Affected products
Remediation
References (1)
Change history (0)
No recorded changes yet.