Eaton Intelligent Power Protector (IPP) prior to version 1.69 is vulnerable to stored Cross Site Scripting. The vulnerability exists due to insufficient validation of user input and improper encoding of the output for certain resources within the IPP software.
                
            References
                    Configurations
                    History
                    No history.
Information
                Published : 2022-04-19 21:15
Updated : 2024-11-21 05:51
NVD link : CVE-2021-23283
Mitre link : CVE-2021-23283
CVE.ORG link : CVE-2021-23283
JSON object : View
Products Affected
                eaton
- intelligent_power_protector
CWE
                
                    
                        
                        CWE-79
                        
            Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
