Vulnerability Description
The encryption mechanism used in Eaton's EasySoft project file was insecure and susceptible to brute force attacks, an attacker with access to this file and the local host machine could potentially read the sensitive information stored and tamper with the project file. This security issue has been fixed in the latest version of Eaton EasySoft which is available on the Eaton download centre.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Eaton | Easysoft | < 8.41 |
Related Weaknesses (CWE)
References
- https://www.eaton.com/content/dam/eaton/company/news-insights/cybersecurity/secuVendor AdvisoryMitigation
FAQ
What is CVE-2026-22614?
CVE-2026-22614 is a vulnerability with a CVSS score of 6.1 (MEDIUM). The encryption mechanism used in Eaton's EasySoft project file was insecure and susceptible to brute force attacks, an attacker with access to this file and the local host machine could potentially re...
How severe is CVE-2026-22614?
CVE-2026-22614 has been rated MEDIUM with a CVSS base score of 6.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2026-22614?
Check the references section above for vendor advisories and patch information. Affected products include: Eaton Easysoft.