A security misconfiguration was identified in Eaton Intelligent Power Protector (IPP), where an HTTP response header was set with an insecure attribute, potentially exposing users to web‑based attacks. This security issue has been fixed in the latest version of Eaton IPP software which is available on the Eaton download centre.
Metrics
Affected Vendors & Products
References
History
Thu, 16 Apr 2026 13:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 16 Apr 2026 06:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Eaton
Eaton ipp Software |
|
| Vendors & Products |
Eaton
Eaton ipp Software |
Thu, 16 Apr 2026 05:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A security misconfiguration was identified in Eaton Intelligent Power Protector (IPP), where an HTTP response header was set with an insecure attribute, potentially exposing users to web‑based attacks. This security issue has been fixed in the latest version of Eaton IPP software which is available on the Eaton download centre. | |
| Weaknesses | CWE-358 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Eaton
Published:
Updated: 2026-04-16T13:10:01.651Z
Reserved: 2026-01-08T04:55:11.730Z
Link: CVE-2026-22618
Updated: 2026-04-16T13:09:56.818Z
Status : Received
Published: 2026-04-16T06:16:10.297
Modified: 2026-04-16T06:16:10.297
Link: CVE-2026-22618
No data.
OpenCVE Enrichment
Updated: 2026-04-16T09:00:05Z