CVE-2024-50686: Critical severity sungrow isolarcloud vulnerability
SunGrow iSolarCloud before the October 31, 2024 remediation is vulnerable to insecure direct object references (IDOR) via the commonService API model.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-50686?
CVE-2024-50686 is classified as a high severity vulnerability due to the potential for unauthorized data access through insecure direct object references.
How do I fix CVE-2024-50686?
To remediate CVE-2024-50686, ensure you upgrade to the patched version of SunGrow iSolarCloud released after October 31, 2024.
What kind of vulnerability is CVE-2024-50686?
CVE-2024-50686 is an insecure direct object reference (IDOR) vulnerability affecting the commonService API model.
Who is affected by CVE-2024-50686?
Users of SunGrow iSolarCloud prior to the October 31, 2024 update are affected by CVE-2024-50686.
What can attackers do by exploiting CVE-2024-50686?
Attackers exploiting CVE-2024-50686 can access unauthorized data, potentially compromising user information and system integrity.