CVE-2024-50691
CVE-2024-50691
Título es
CVE-2024-50691
Mié, 26/02/2025 – 21:15
Gravedad 2.0 Txt
Pendiente de análisis
Título en
CVE-2024-50691
Descripción en
SunGrow iSolarCloud Android app V2.1.6.20241104 and prior suffers from Missing SSL Certificate Validation. The app explicitly ignores certificate errors and is vulnerable to MiTM attacks. Attackers can impersonate the iSolarCloud server and communicate with the Android app.
26/02/2025
26/02/2025
Gravedad 3.1 Txt Gravedad 3.1 (CVSS 3.1 Base Score)
Pendiente de análisis
Referencias
https://en.sungrowpower.com/security-notice-detail-2/6124
Enviar en el boletín
Off
