Filtered by vendor Eaton Subscriptions
Filtered by product G4 Pdu Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2025-48393 1 Eaton 1 G4 Pdu 2025-08-12 5.7 Medium
The server identity check mechanism for firmware upgrade performed via command shell is insecurely implemented potentially allowing an attacker to perform a Man-in-the-middle attack. This security issue has been fixed in the latest version which is available on the Eaton download center.
CVE-2025-48394 1 Eaton 1 G4 Pdu 2025-08-12 4.7 Medium
An attacker with authenticated and privileged access could modify the contents of a non-sensitive file by traversing the path in the limited shell of the CLI. This security issue has been fixed in the latest version which is available on the Eaton download center.