9.8
CVSSv3

CVE-2017-9856

Published: 05/08/2017 Updated: 04/06/2024
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

An issue exists in SMA Solar Technology products. Sniffed passwords from SMAdata2+ communication can be decrypted very easily. The passwords are "encrypted" using a very simple encryption algorithm. This enables an malicious user to find the plaintext passwords and authenticate to the device. NOTE: the vendor reports that only Sunny Boy TLST-21 and TL-21 and Sunny Tripower TL-10 and TL-30 could potentially be affected

Vulnerable Product Search on Vulmon Subscribe to Product

sma sunny boy 3600 firmware -

sma sunny boy 5000 firmware -

sma sunny tripower core1 firmware -

sma sunny tripower 15000tl firmware -

sma sunny tripower 20000tl firmware -

sma sunny tripower 25000tl firmware -

sma sunny tripower 5000tl firmware -

sma sunny tripower 12000tl firmware -

sma sunny tripower 60 firmware -

sma sunny boy 3000tl firmware -

sma sunny boy 3600tl firmware -

sma sunny boy 4000tl firmware -

sma sunny boy 5000tl firmware -

sma sunny boy 1.5 firmware -

sma sunny boy 2.5 firmware -

sma sunny boy 3.0 firmware -

sma sunny boy 3.6 firmware -

sma sunny boy 4.0 firmware -

sma sunny boy 5.0 firmware -

sma sunny central 2200 firmware -

sma sunny central 1000cp xt firmware -

sma sunny central 800cp xt firmware -

sma sunny central 850cp xt firmware -

sma sunny central 900cp xt firmware -

sma sunny central 500cp xt firmware -

sma sunny central 630cp xt firmware -

sma sunny central 720cp xt firmware -

sma sunny central 760cp xt firmware -

sma sunny central storage 500 firmware -

sma sunny central storage 630 firmware -

sma sunny central storage 720 firmware -

sma sunny central storage 760 firmware -

sma sunny central storage 800 firmware -

sma sunny central storage 850 firmware -

sma sunny central storage 900 firmware -

sma sunny central storage 1000 firmware -

sma sunny central storage 2200 firmware -

sma sunny central storage 2500-ev firmware -

sma sunny boy storage 2.5 firmware -