CVE-2024-50698: Buffer Overflow
Published Jan 24, 2025
·Updated
SunGrow WiNet-SV200.001.00.P027 and earlier versions is vulnerable to heap-based buffer overflow due to bounds checks of the MQTT message content.
Affected Software
3 affected components
SunGrow WiNet-SV200<=200.001.00.P027
All of the following
Sungrowpower Winet-s Firmware<200.001.00.p027
Sungrowpower Winet-s
Event History
Jan 24, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·11:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-50698?
CVE-2024-50698 is classified as a critical vulnerability due to the potential for remote code execution resulting from a heap-based buffer overflow.
2
How do I fix CVE-2024-50698?
To fix CVE-2024-50698, update the SunGrow WiNet-SV200 to a version later than 200.001.00.P027.
3
What is affected by CVE-2024-50698?
CVE-2024-50698 affects SunGrow WiNet-SV200 versions 200.001.00.P027 and earlier.
4
What are the implications of CVE-2024-50698?
The implications of CVE-2024-50698 include potential unauthorized access and manipulation of the device through the vulnerabilities in MQTT message content.
5
How does CVE-2024-50698 exploit MQTT message handling?
CVE-2024-50698 exploits inadequate bounds checks during MQTT message handling, leading to a heap-based buffer overflow.