Lucene search

K

Sunny Explorer Security Vulnerabilities

cve
cve

CVE-2017-9851

An issue was discovered in SMA Solar Technology products. By sending nonsense data or setting up a TELNET session to the database port of Sunny Explorer, the application can be crashed. NOTE: the vendor reports that the maximum possible damage is a communication failure. Also, only Sunny Boy TLST-2...

7.5CVSS

7.5AI Score

0.002EPSS

2017-08-05 05:29 PM
25
cve
cve

CVE-2017-9862

An issue was discovered in SMA Solar Technology products. When signed into Sunny Explorer with a wrong password, it is possible to create a debug report, disclosing information regarding the application and allowing the attacker to create and save a .txt file with contents to his liking. An attacke...

7.5CVSS

7.3AI Score

0.002EPSS

2017-08-05 05:29 PM
16
cve
cve

CVE-2017-9863

An issue was discovered in SMA Solar Technology products. If a user simultaneously has Sunny Explorer running and visits a malicious host, cross-site request forgery can be used to change settings in the inverters (for example, issuing a POST request to change the user password). All Sunny Explorer...

8.8CVSS

8.4AI Score

0.001EPSS

2017-08-05 05:29 PM
25
cve
cve

CVE-2024-1889

Cross-Site Request Forgery vulnerability in SMA Cluster Controller, affecting version 01.05.01.R. This vulnerability could allow an attacker to send a malicious link to an authenticated user to perform actions with these user permissions on the affected device.

8.8CVSS

8.4AI Score

0.0004EPSS

2024-02-26 04:27 PM
95