CVE-2021-4459: SMA: Directory Traversal in Sunny Boy <3.10.27.R
An authorized remote attacker can access files and directories outside the intended web root, potentially exposing sensitive system information of the affected Sunny Boy devices.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-4459?
CVE-2021-4459 has a severity rating of medium, indicating a significant risk from unauthorized file access.
How do I fix CVE-2021-4459?
To fix CVE-2021-4459, update the Sunny Boy devices to the latest version beyond 3.10.27.R where the vulnerability is addressed.
What are the potential risks associated with CVE-2021-4459?
The risks associated with CVE-2021-4459 include unauthorized access to sensitive system information that can compromise device security.
Who is affected by CVE-2021-4459?
CVE-2021-4459 affects users of SMA Sunny Boy devices running versions up to and including 3.10.27.R.
Can CVE-2021-4459 be exploited remotely?
Yes, CVE-2021-4459 can be exploited by an authorized remote attacker, allowing them to access files outside the intended web root.