Security Advisory
CVE-2020-6652
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
Incorrect Privilege Assignment vulnerability in Eatons Intelligent Power Manager (IPM) v1.67 & prior allow non-admin users to upload the system configuration files by sending specially crafted requests. This can result in non-admin users manipulating the system configurations via uploading the configurations with incorrect parameters.