Lucene search

K
cvelistIcscertCVELIST:CVE-2019-13529
HistoryOct 09, 2019 - 3:26 p.m.

CVE-2019-13529

2019-10-0915:26:53
CWE-352
icscert
www.cve.org
6

AI Score

8.5

Confidence

High

EPSS

0.002

Percentile

55.6%

An attacker could send a malicious link to an authenticated operator, which may allow remote attackers to perform actions with the permissions of the user on the Sunny WebBox Firmware Version 1.6 and prior. This device uses IP addresses to maintain communication after a successful login, which would increase the ease of exploitation.

CNA Affected

[
  {
    "product": "Sunny WebBox",
    "vendor": "SMA Solar Technology AG",
    "versions": [
      {
        "status": "affected",
        "version": "Firmware Version 1.6 and prior"
      }
    ]
  }
]

AI Score

8.5

Confidence

High

EPSS

0.002

Percentile

55.6%