Security issues in Eaton Intelligent Power Protector (IPP)
13Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackcvss 5.2epss 0.5%
exploitation probability
0.5%top 59% of all CVEs
observed exploitation
nono source reports it
Eaton Intelligent Power Protector (IPP) prior to version 1.69 is vulnerable to stored Cross Site Scripting. The vulnerability exists due to insufficient validation of user input and improper encoding of the output for certain resources within the IPP software.
CVSS:3.1/AV:A/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:H
Affected products
Eaton · Eaton Intelligent Power Protector (IPP)