PT-2026-33259 · Eaton · Ipp
Published
2026-04-16
·
Updated
2026-04-16
·
CVE-2026-22617
CVSS v3.1
5.7
Medium
| AV:N/AC:H/PR:H/UI:R/S:U/C:H/I:H/A:N |
Eaton Intelligent Power Protector (IPP) uses an insecure cookie configuration, which could allow a network‑based attacker to intercept the cookie and exploit it through a man‑in‑the‑middle attack. This security issue has been fixed in the latest version of Eaton IPP software which is available on the Eaton download centre.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ipp