CVE-2025-67450
- EPSS 0.01%
- Veröffentlicht 26.12.2025 06:59:41
- Zuletzt bearbeitet 18.02.2026 14:38:52
Due to insecure library loading in the Eaton UPS Companion software executable, an attacker with access to the software package could perform arbitrary code execution . This security issue has been fixed in the latest version of EUC which is availa...
CVE-2025-59888
- EPSS 0.01%
- Veröffentlicht 26.12.2025 06:53:33
- Zuletzt bearbeitet 18.02.2026 14:39:52
Improper quotation in search paths in the Eaton UPS Companion software installer could lead to arbitrary code execution of an attacker with the access to the file system. This security issue has been fixed in the latest version of EUC which is ava...
CVE-2025-59887
- EPSS 0.01%
- Veröffentlicht 26.12.2025 06:48:08
- Zuletzt bearbeitet 18.02.2026 14:37:55
Improper authentication of library files in the Eaton UPS Companion software installer could lead to arbitrary code execution of an attacker with the access to the software package. This security issue has been fixed in the latest version of EUC whi...
CVE-2020-6650
- EPSS 4.85%
- Veröffentlicht 23.03.2020 14:15:13
- Zuletzt bearbeitet 21.11.2024 05:36:05
UPS companion software v1.05 & Prior is affected by ‘Eval Injection’ vulnerability. The software does not neutralize or incorrectly neutralizes code syntax before using the input in a dynamic evaluation call e.g.”eval” in “Update Manager” class when ...