SunGrow WiNet-SV200.001.00.P027 and earlier versions...
Moderate severity
Unreviewed
Published
Jan 25, 2025
to the GitHub Advisory Database
•
Updated Feb 6, 2025
Description
Published by the National Vulnerability Database
Jan 24, 2025
Published to the GitHub Advisory Database
Jan 25, 2025
Last updated
Feb 6, 2025
SunGrow WiNet-SV200.001.00.P027 and earlier versions contains hardcoded MQTT credentials that allow an attacker to send arbitrary commands to an arbitrary inverter. It is also possible to impersonate the broker, because TLS is not used to identify the real MQTT broker. This means that MQTT communications are vulnerable to MitM attacks at the TCP/IP level.
References