CVE-2024-50695: Buffer Overflow
Published Jan 24, 2025
·Updated
SunGrow WiNet-SV200.001.00.P027 and earlier versions is vulnerable to stack-based buffer overflow when parsing MQTT messages, due to missing MQTT topic bounds checks.
Affected Software
3 affected components
SunGrow WiNet-SV200<=200.001.00.P027
All of the following
Sungrowpower Winet-s Firmware<200.001.00.p027
Sungrowpower Winet-s
Event History
Jan 24, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·11:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-50695?
CVE-2024-50695 is classified as a critical vulnerability due to its potential for remote code execution.
2
How do I fix CVE-2024-50695?
To mitigate CVE-2024-50695, update the SunGrow WiNet-SV200 to the latest version that addresses this buffer overflow issue.
3
What types of devices are affected by CVE-2024-50695?
CVE-2024-50695 affects SunGrow WiNet-SV200 versions up to and including 200.001.00.P027.
4
What is the main issue caused by CVE-2024-50695?
The main issue with CVE-2024-50695 is stack-based buffer overflow during MQTT message parsing, which could lead to unauthorized access.
5
Is CVE-2024-50695 being actively exploited?
As of now, there are no confirmed reports of active exploitation of CVE-2024-50695 in the wild.