First published: Sat Aug 05 2017(Updated: )
** DISPUTED ** An issue was discovered in SMA Solar Technology products. By sending nonsense data or setting up a TELNET session to the database port of Sunny Explorer, the application can be crashed. NOTE: the vendor reports that the maximum possible damage is a communication failure. Also, only Sunny Boy TLST-21 and TL-21 and Sunny Tripower TL-10 and TL-30 could potentially be affected.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Sma Sunny Explorer | ||
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-9851 is considered a low severity vulnerability as it primarily leads to a communication failure.
To address CVE-2017-9851, ensure that the SMA Solar Technology products are updated to the latest version available from the vendor.
CVE-2017-9851 affects the SMA Sunny Explorer application.
Exploiting CVE-2017-9851 could crash the application by sending invalid data or establishing a TELNET session on the database port.
Currently, the vendor has not provided any specific workaround for CVE-2017-9851 beyond applying software updates.