ZeroHour

CVE-2024-50694

CVSS 3.1
9.8 critical
EPSS
<1%p45
Published
()
Modified
Description

In SunGrow WiNet-SV200.001.00.P027 and earlier versions, when copying the timestamp read from an MQTT message, the underlying code does not check the bounds of the buffer that is used to store the message. This may lead to a stack-based buffer overflow.

Vendors
sungrowpower
Products
winet-s firmware
Weakness
CWE-121
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.