Security Advisory

CVE-2020-6652

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-05-07 15:58:19
Last updated 2024-09-16 23:45:31
Assigner Eaton
State PUBLISHED

Description

Incorrect Privilege Assignment vulnerability in Eatons Intelligent Power Manager (IPM) v1.67 & prior allow non-admin users to upload the system configuration files by sending specially crafted requests. This can result in non-admin users manipulating the system configurations via uploading the configurations with incorrect parameters.