CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 5.7. See the original NVD description below for full technical details.
CVE
CVE-2026-22613
Severity
MEDIUM
CVSS
5.7
EPSS
0.15%
Original NVD Description
The server identity check mechanism for firmware upgrade performed via command shell is insecurely implemented potentially allowing an attacker to perform a Man-in-the-middle attack. This security issue has been fixed in the latest firmware version of Eaton Network M3 which is available on the Eaton download center.