Search Results (2 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2025-48396 1 Eaton 1 Brightlayer Software Suite 2025-11-04 8.3 High
Arbitrary code execution is possible due to improper validation of the file upload functionality in Eaton BLSS. This security issue has been fixed in the latest script patch latest version of of Eaton BLSS (7.3.0.SCP004).
CVE-2025-48397 1 Eaton 1 Brightlayer Software Suite 2025-11-04 7.1 High
The privileged user could log in without sufficient credentials after enabling an application protocol. This security issue has been fixed in the latest script patch latest version of of Eaton BLSS (7.3.0.SCP004).