An issue regarding missing authentication for certain utilities exists in CyberPower PowerPanel Enterprise prior to v2.8.3. An unauthenticated remote attacker can access the PDNU REST APIs, which may result in compromise of the application.
History

Thu, 23 Oct 2025 12:15:00 +0000

Type Values Removed Values Added
First Time appeared Cyberpower powerpanel
CPEs cpe:2.3:a:cyberpower:powerpanel:*:*:*:*:enterprise:windows:*:*
Vendors & Products Cyberpower powerpanel

Fri, 11 Jul 2025 13:45:00 +0000

Type Values Removed Values Added
Metrics epss

{'score': 0.7317}

epss

{'score': 0.74045}


cve-icon MITRE

Status: PUBLISHED

Assigner: tenable

Published: 2024-05-09T14:54:45.407Z

Updated: 2024-08-02T02:20:35.343Z

Reserved: 2024-04-17T11:47:39.834Z

Link: CVE-2024-32735

cve-icon Vulnrichment

Updated: 2024-08-02T02:20:35.343Z

cve-icon NVD

Status : Analyzed

Published: 2024-05-14T15:37:03.527

Modified: 2025-10-23T12:13:36.923

Link: CVE-2024-32735

cve-icon Redhat

No data.