First published: Wed Feb 26 2025(Updated: )
SunGrow iSolarCloud before the October 31, 2024 remediation is vulnerable to insecure direct object references (IDOR) via the userService API model.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Sungrow iSolarCloud | <2024-10-31 | |
iSolarCloud | <October 31, 2024 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-50693 is classified as a medium severity vulnerability due to its potential impact on user data confidentiality.
To remediate CVE-2024-50693, upgrade SunGrow iSolarCloud to a version released after October 31, 2024.
CVE-2024-50693 is categorized as an Insecure Direct Object Reference (IDOR) vulnerability.
Any users of SunGrow iSolarCloud versions released before October 31, 2024 are affected by CVE-2024-50693.
Attackers exploiting CVE-2024-50693 can potentially access unauthorized data through the userService API model.