Filtered by vendor Cyberpower Subscriptions
Filtered by product Powerpanel Enterprise Subscriptions
Total 4 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2024-32735 1 Cyberpower 1 Powerpanel Enterprise 2025-07-12 9.8 Critical
An issue regarding missing authentication for certain utilities exists in CyberPower PowerPanel Enterprise prior to v2.8.3. An unauthenticated remote attacker can access the PDNU REST APIs, which may result in compromise of the application.
CVE-2024-32739 1 Cyberpower 1 Powerpanel Enterprise 2025-03-28 7.5 High
A sql injection vulnerability exists in CyberPower PowerPanel Enterprise prior to v2.8.3. An unauthenticated remote attacker can leak sensitive information via the "query_ptask_verbose" function within MCUDBHelper.
CVE-2024-32736 1 Cyberpower 1 Powerpanel Enterprise 2025-03-25 7.5 High
A sql injection vulnerability exists in CyberPower PowerPanel Enterprise prior to v2.8.3. An unauthenticated remote attacker can leak sensitive information via the "query_utask_verbose" function within MCUDBHelper.
CVE-2024-32737 1 Cyberpower 1 Powerpanel Enterprise 2024-11-21 7.5 High
A sql injection vulnerability exists in CyberPower PowerPanel Enterprise prior to v2.8.3. An unauthenticated remote attacker can leak sensitive information via the "query_contract_result" function within MCUDBHelper.