Vulnerabilities > Eaton > Intelligent Power Protector > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-04-19 CVE-2021-23283 Cross-site Scripting vulnerability in Eaton Intelligent Power Protector
Eaton Intelligent Power Protector (IPP) prior to version 1.69 is vulnerable to stored Cross Site Scripting.
network
low complexity
eaton CWE-79
5.4
2022-04-01 CVE-2021-23288 Cross-site Scripting vulnerability in Eaton Intelligent Power Protector
The vulnerability exists due to insufficient validation of input from certain resources by the IPP software.
low complexity
eaton CWE-79
4.8