CVE-2024-50696
CVE-2024-50696
Título es
CVE-2024-50696
Mié, 26/02/2025 – 21:15
Gravedad 2.0 Txt
Pendiente de análisis
Título en
CVE-2024-50696
Descripción en
SunGrow WiNet-S V200.001.00.P025 and earlier versions is missing integrity checks for firmware upgrades. Sending a specific MQTT message allows an update to an inverter or a WiNet connectivity dongle with a bogus firmware file that is located on attacker-controlled server.
26/02/2025
26/02/2025
Gravedad 3.1 Txt Gravedad 3.1 (CVSS 3.1 Base Score)
Pendiente de análisis
Referencias
https://en.sungrowpower.com/security-notice-detail-2/6140
Enviar en el boletín
Off
