7.5
CVSSv3

CVE-2017-9864

Published: 05/08/2017 Updated: 14/05/2024
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

An issue exists in SMA Solar Technology products. An attacker can change the plant time even when not authenticated in any way. This changes the system time, possibly affecting lockout policies and random-number generators based on timestamps, and makes timestamps for data analysis unreliable. NOTE: the vendor reports that this is largely irrelevant because it only affects log-entry timestamps, and because the plant time would later be reset via NTP. (It has never been the case that a lockout policy or random-number generator was affected.) Also, only Sunny Boy TLST-21 and TL-21 and Sunny Tripower TL-10 and TL-30 could potentially be affected

Vulnerable Product Search on Vulmon Subscribe to Product

sma sunny_boy_3600_firmware -

sma sunny_boy_5000_firmware -

sma sunny_tripower_core1_firmware -

sma sunny_tripower_15000tl_firmware -

sma sunny_tripower_20000tl_firmware -

sma sunny_tripower_25000tl_firmware -

sma sunny_tripower_5000tl_firmware -

sma sunny_tripower_12000tl_firmware -

sma sunny_tripower_60_firmware -

sma sunny_boy_3000tl_firmware -

sma sunny_boy_3600tl_firmware -

sma sunny_boy_4000tl_firmware -

sma sunny_boy_5000tl_firmware -

sma sunny_boy_1.5_firmware -

sma sunny_boy_2.5_firmware -

sma sunny_boy_3.0_firmware -

sma sunny_boy_3.6_firmware -

sma sunny_boy_4.0_firmware -

sma sunny_boy_5.0_firmware -

sma sunny_central_2200_firmware -

sma sunny_central_1000cp_xt_firmware -

sma sunny_central_800cp_xt_firmware -

sma sunny_central_850cp_xt_firmware -

sma sunny_central_900cp_xt_firmware -

sma sunny_central_500cp_xt_firmware -

sma sunny_central_630cp_xt_firmware -

sma sunny_central_720cp_xt_firmware -

sma sunny_central_760cp_xt_firmware -

sma sunny_central_storage_500_firmware -

sma sunny_central_storage_630_firmware -

sma sunny_central_storage_720_firmware -

sma sunny_central_storage_760_firmware -

sma sunny_central_storage_800_firmware -

sma sunny_central_storage_850_firmware -

sma sunny_central_storage_900_firmware -

sma sunny_central_storage_1000_firmware -

sma sunny_central_storage_2200_firmware -

sma sunny_central_storage_2500-ev_firmware -

sma sunny_boy_storage_2.5_firmware -