Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
SMA: SQL injection in Sunny Central UP
Vulnerability Description
An authenticated attacker with low privileges may use a SQL Injection vulnerability in the affected products administration panel to gain read and write access to a specific log file of the device.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N
Vulnerability Type
SQL命令中使用的特殊元素转义处理不恰当(SQL注入)
Vulnerability Title
SMA Solar多款产品 SQL注入漏洞
Vulnerability Description
SMA Solar Sunny Central SC 1760-US等都是德国SMA Solar公司的一款太阳能逆变器。 SMA Solar多款产品存在SQL注入漏洞。攻击者利用该漏洞可以获取对设备特定日志文件的读写权限。以下产品受到影响:SMA Solar Sunny Central SC 1760-US、SMA Solar Sunny Central SC 1850-US、SMA Solar Sunny Central SC 2000 EV-US和SMA Solar Sunny Central SC
CVSS Information
N/A
Vulnerability Type
N/A