Improper authentication of library files in the Eaton UPS Companion software installer could lead to arbitrary code execution of an attacker with the access to the software package. This security issue has been fixed in the latest version of EUC which is available on the Eaton download center.
Metrics
Affected Vendors & Products
References
History
Wed, 18 Feb 2026 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:eaton:ups_companion:*:*:*:*:*:*:*:* |
Mon, 29 Dec 2025 23:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Eaton
Eaton ups Companion |
|
| Vendors & Products |
Eaton
Eaton ups Companion |
Fri, 26 Dec 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 26 Dec 2025 07:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper authentication of library files in the Eaton UPS Companion software installer could lead to arbitrary code execution of an attacker with the access to the software package. This security issue has been fixed in the latest version of EUC which is available on the Eaton download center. | |
| Weaknesses | CWE-427 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Eaton
Published:
Updated: 2025-12-26T15:45:28.715Z
Reserved: 2025-09-23T08:34:05.389Z
Link: CVE-2025-59887
Updated: 2025-12-26T15:45:25.849Z
Status : Analyzed
Published: 2025-12-26T07:15:45.047
Modified: 2026-02-18T14:37:55.947
Link: CVE-2025-59887
No data.
OpenCVE Enrichment
Updated: 2025-12-29T23:04:13Z