QID 591374
Date Published: 2023-04-03
QID 591374: Eaton Power XpertT Gateway models Remote Code Execution (RCE) Vulnerability (ETN-SB-2015-1000)
AFFECTED PRODUCTS
Power XpertT Gateway models:
PXG 200E
PXG 400E
PXG 600E
PXG 800E
QID Detection Logic:
This QID checks for the Vulnerable version of Eaton Power XpertT Gateway models using passive scanning.
The vulnerability is reported against Network Time Protocol (NTP) code library versions 4.2.7 and below and can be exploited by allowing a buffer overflow or potential remote code execution.
Solution
Customers are advised to refer to CERT MITIGATIONS section ETN-SB-2015-1000 for affected packages and patching details.
Vendor References
CVEs related to QID 591374
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| ETN-SB-2015-1000 |
|