PT-2024-11583 · Eaton · Ipp
Published
2024-11-25
·
Updated
2024-11-27
·
CVE-2022-33861
CVSS v3.1
5.1
Medium
| Vector | AV:A/AC:H/PR:L/UI:R/S:C/C:L/I:L/A:L |
Name of the Vulnerable Software and Affected Versions
IPP versions prior to v1.71
Description
The issue is related to insufficient verification of data authenticity, causing the software to accept invalid data. This affects multiple versions of the Eaton products.
Recommendations
For versions prior to v1.71, update to version v1.71 or later to resolve the issue. As a temporary workaround, consider implementing additional validation checks on the data to minimize the risk of accepting invalid data. Restrict access to sensitive areas of the software until the update is applied.
Fix
Insufficient Verification of Data Authenticity
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ipp