Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gxmw-34m7-64r8

Опубликовано: 25 янв. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 5.4

Описание

SunGrow WiNet-SV200.001.00.P027 and earlier versions contains hardcoded MQTT credentials that allow an attacker to send arbitrary commands to an arbitrary inverter. It is also possible to impersonate the broker, because TLS is not used to identify the real MQTT broker. This means that MQTT communications are vulnerable to MitM attacks at the TCP/IP level.

SunGrow WiNet-SV200.001.00.P027 and earlier versions contains hardcoded MQTT credentials that allow an attacker to send arbitrary commands to an arbitrary inverter. It is also possible to impersonate the broker, because TLS is not used to identify the real MQTT broker. This means that MQTT communications are vulnerable to MitM attacks at the TCP/IP level.

EPSS

Процентиль: 20%
0.00063
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-798

Связанные уязвимости

CVSS3: 5.4
nvd
около 1 года назад

SunGrow WiNet-SV200.001.00.P027 and earlier versions contains hardcoded MQTT credentials that allow an attacker to send arbitrary commands to an arbitrary inverter. It is also possible to impersonate the broker, because TLS is not used to identify the real MQTT broker. This means that MQTT communications are vulnerable to MitM attacks at the TCP/IP level.

EPSS

Процентиль: 20%
0.00063
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-798