First published: Fri Jan 24 2025(Updated: )
SunGrow WiNet-SV200.001.00.P027 and earlier versions contains a hardcoded password that can be used to decrypt all firmware updates.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
SunGrow WiNet-SV200 | <=200.001.00.P027 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-50690 is considered a high severity vulnerability due to the presence of a hardcoded password used for firmware decryption.
To fix CVE-2024-50690, update the SunGrow WiNet-SV200 to a version later than 200.001.00.P027 that addresses this vulnerability.
CVE-2024-50690 affects the SunGrow WiNet-SV200 device versions up to and including 200.001.00.P027.
The risks associated with CVE-2024-50690 include potential unauthorized access to firmware updates, leading to exploitation of the device.
Currently, there is no documented workaround for CVE-2024-50690 besides updating to the fixed firmware version.