The encryption mechanism used in Eaton's EasySoft project file was insecure and susceptible to brute force attacks, an attacker with access to this file and the local host
machine could potentially read the sensitive information stored and tamper with the project file. This security issue has been fixed in the latest version of Eaton EasySoft which is available on the Eaton download centre.
References
| Link | Resource |
|---|---|
| https://www.eaton.com/content/dam/eaton/company/news-insights/cybersecurity/security-bulletins/etn-va-2025-1023.pdf | Mitigation Vendor Advisory |
Configurations
History
17 Jun 2026, 10:20
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://www.eaton.com/content/dam/eaton/company/news-insights/cybersecurity/security-bulletins/etn-va-2025-1023.pdf - Mitigation, Vendor Advisory |
21 May 2026, 13:07
| Type | Values Removed | Values Added |
|---|---|---|
| First Time |
Eaton
Eaton easysoft |
|
| Summary |
|
|
| CPE | cpe:2.3:a:eaton:easysoft:*:*:*:*:*:*:*:* | |
| References | () https://www.eaton.com/content/dam/eaton/company/news-insights/cybersecurity/security-bulletins/etn-va-2025-1023.pdf - Vendor Advisory, Mitigation |
10 Mar 2026, 18:18
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-03-10 18:18
Updated : 2026-06-17 10:20
NVD link : CVE-2026-22614
Mitre link : CVE-2026-22614
CVE.ORG link : CVE-2026-22614
JSON object : View
Products Affected
eaton
- easysoft
CWE
CWE-257
Storing Passwords in a Recoverable Format
