CVE-2026-22618 - CERT CVE
ID CVE-2026-22618
Sažetak A security misconfiguration was identified in Eaton Intelligent Power Protector (IPP), where an HTTP response header was set with an insecure attribute, potentially exposing users to web‑based attacks. This security issue has been fixed in the latest version of Eaton IPP software which is available on the Eaton download centre.
Reference
CVSS
Base: 5.9
Impact: 4.2
Exploitability:1.6
Pristup
VektorSloženostAutentikacija
NETWORK HIGH NONE
Impact
PovjerljivostCjelovitostDostupnost
LOW HIGH NONE
CVSS vektor CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:H/A:N
Zadnje važnije ažuriranje 17-04-2026 - 15:38
Objavljeno 16-04-2026 - 06:16