Ghostwire

CVE-2026-22617: Eaton Intelligent Power Protector (IPP) uses an insecure cookie configuration, which could allow a network‑based...

MEDIUM CVSS 5.5

Published: April 16, 2026 | Last Modified: April 16, 2026

Description

Eaton Intelligent Power Protector (IPP) uses an insecure cookie configuration, which could allow a network‑based attacker to intercept the cookie and exploit it through a man‑in‑the‑middle attack. This security issue has been fixed in the latest version of Eaton IPP software which is available on the Eaton download centre.

Ghostwire Analysis — What This Means Practically

This analysis is generated by Ghostwire from NVD, CISA KEV, EPSS, and open-source intelligence data. Verify findings through primary sources before acting.

Security Coverage (1 articles)

References