Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-50694

Опубликовано: 24 янв. 2025
Источник: nvd
CVSS3: 9.8
EPSS Низкий

Описание

In SunGrow WiNet-SV200.001.00.P027 and earlier versions, when copying the timestamp read from an MQTT message, the underlying code does not check the bounds of the buffer that is used to store the message. This may lead to a stack-based buffer overflow.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:o:sungrowpower:winet-s_firmware:*:*:*:*:*:*:*:*
Версия до 200.001.00.p027 (исключая)
cpe:2.3:h:sungrowpower:winet-s:-:*:*:*:*:*:*:*

EPSS

Процентиль: 38%
0.00163
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-121

Связанные уязвимости

CVSS3: 9.8
github
9 месяцев назад

In SunGrow WiNet-SV200.001.00.P027 and earlier versions, when copying the timestamp read from an MQTT message, the underlying code does not check the bounds of the buffer that is used to store the message. This may lead to a stack-based buffer overflow.

EPSS

Процентиль: 38%
0.00163
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-121