CVE-2018-12031 | LFI in Eaton Intelligent Power Manager v1.6 allows an attacker to include a file, it can lead to sensitive information disclosure, denial of service and code execution.
Eaton-Intelligent-Power-Manager-Local-File-Inclusion Local file inclusion in Eaton Intelligent Power Manager v16 allows an attacker to include a file, it can lead to sensitive information disclosure, denial of service and code execution CVE-2018-12031 To exploit vulnerability, someone could use '[HOST]/server/node_upgrade_srvjs?action=downloadFirmware&f