← العودة للجدول
CVE-2021-23281
CVE-2021-23281 — Eaton Intelligent Power Manager (IPM) prior to 1.69 is vulnerable to unauthentic
📅 2021-04-13
🔴 Critical 🔥 No NVD Exploit Intel CVSS 10 🎯 EPSS 0.72%

📋 الوصف الكامل

Eaton Intelligent Power Manager (IPM) prior to 1.69 is vulnerable to unauthenticated remote code execution vulnerability. IPM software does not sanitize the date provided via coverterCheckList action in meta_driver_srv.js class. Attackers can send a specially crafted packet to make IPM connect to rouge SNMP server and execute attacker-controlled code.

💻 الأنظمة المتأثرة

Intel Processor

⚠️ نوع التهديد

Exploit

🔗 CVE ID

CVE-2021-23281

📡 المصدر

NVD

✅ الحلول والتخفيف

Refer to CVE-2021-23281 NVD advisory

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ←