CNNVD-202508-600 Information

CNNVD ID

CNNVD-202508-600

CVE-2025-48393

  • CNNVD Published: 2025-08-06

Description (Chinese)

Eaton Rack PDU G4是美国伊顿(Eaton)公司的一款竖装配电单元。 Eaton Rack PDU G4 3.5.0及之前版本存在安全漏洞,该漏洞源于固件升级的服务器身份检查机制不安全,可能导致中间人攻击。

Description (English)

Eaton Rock PDU G4 is a vertical electrical unit of the United States company Eaton. There is a security loophole in Eaton Rack PDU G4 3.5.0 and earlier versions, which stems from the insecurity of the server identification mechanism for the upgrade of the solids, which may lead to attacks by intermediaries.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

伊顿

Published

2025-08-06

Last Modified

2026-02-24

References

https://www.eaton.com/content/dam/eaton/company/news-insights/cybersecurity/security-bulletins/etn-va-2025-1002.pdf

Patch

https://www.eaton.com/content/dam/eaton/company/news-insights/cybersecurity/security-bulletins/etn-va-2025-1002.pdf

Share on: