CVE Database
/

CVE-2024-11025

Back to search

CVE-2024-11025

Published: Nov 27, 2024

Modified: Nov 27, 2024

PUBLISHED

CVSS v3.1

5.4

MEDIUM

Description

An authenticated attacker with low privileges may use a SQL Injection vulnerability in the affected products administration panel to gain read and write access to a specific log file of the device.

VendorProductVersions

SMA

Sunny Central SC 1760-US

affected
0 - < 10.01.18.R

SMA

Sunny Central SC 1850-US

affected
0 - < 10.01.18.R

SMA

Sunny Central SC 2000 EV-US

affected
0 - < 10.01.18.R

SMA

Sunny Central SC 2000-US

affected
0 - < 10.01.18.R

SMA

Sunny Central SC-2200-10

affected
0 - < 10.01.18.R

SMA

Sunny Central SC 2200-US

affected
0 - < 10.01.18.R

SMA

Sunny Central SC-2475-10

affected
0 - < 10.01.18.R

SMA

Sunny Central SC 2500 EV-US

affected
0 - < 10.01.18.R

SMA

Sunny Central SC 2660 UP

affected
0 - < 10.01.18.R

SMA

Sunny Central SC 2660 UP-US

affected
0 - < 10.01.18.R

SMA

Sunny Central SC 2750 EV-US

affected
0 - < 10.01.18.R

SMA

Sunny Central SC 2750 UP-US

affected
0 - < 10.01.18.R

SMA

Sunny Central SC 2800 UP

affected
0 - < 10.01.18.R

SMA

Sunny Central SC 2800 UP-US

affected
0 - < 10.01.18.R

SMA

Sunny Central SC 2930 UP

affected
0 - < 10.01.18.R

SMA

Sunny Central SC 2930 UP-US

affected
0 - < 10.01.18.R

SMA

Sunny Central SC 3060 UP

affected
0 - < 10.01.18.R

SMA

Sunny Central SC 3060 UP-US

affected
0 - < 10.01.18.R

SMA

Sunny Central SC 4000 UP

affected
0 - < 10.01.18.R

SMA

Sunny Central SC 4000 UP-US

affected
0 - < 10.01.18.R

SMA

Sunny Central SC 4200 UP

affected
0 - < 10.01.18.R

SMA

Sunny Central SC 4200 UP-US

affected
0 - < 10.01.18.R

SMA

Sunny Central SC 4400 UP

affected
0 - < 10.01.18.R

SMA

Sunny Central SC 4400 UP-JP

affected
0 - < 10.01.18.R

SMA

Sunny Central SC 4400 UP-US

affected
0 - < 10.01.18.R

SMA

Sunny Central SC 4600 UP

affected
0 - < 10.01.18.R

SMA

Sunny Central SC 4600 UP-US

affected
0 - < 10.01.18.R

SMA

Sunny Central Storage SCS-1900-10

affected
0 - < 10.01.18.R

SMA

Sunny Central Storage SCS-2200-10

affected
0 - < 10.01.18.R

SMA

Sunny Central Storage SCS 2300 UP-XT

affected
0 - < 10.01.18.R

SMA

Sunny Central Storage SCS 2300 UP-XT-US

affected
0 - < 10.01.18.R

SMA

Sunny Central Storage SCS 2400 UP-XT

affected
0 - < 10.01.18.R

SMA

Sunny Central Storage SCS 2400 UP-XT-US

affected
0 - < 10.01.18.R

SMA

Sunny Central Storage SCS-2475-10

affected
0 - < 10.01.18.R

SMA

Sunny Central Storage SCS 2530 UP-XT

affected
0 - < 10.01.18.R

SMA

Sunny Central Storage SCS 2530 UP-XT-US

affected
0 - < 10.01.18.R

SMA

Sunny Central Storage SCS 2630 UP-XT

affected
0 - < 10.01.18.R

SMA

Sunny Central Storage SCS 2630 UP-XT-US

affected
0 - < 10.01.18.R

SMA

Sunny Central Storage SCS-2900-10

affected
0 - < 10.01.18.R

SMA

Sunny Central Storage SCS 3450 UP

affected
0 - < 10.01.18.R

SMA

Sunny Central Storage SCS 3450 UP-US

affected
0 - < 10.01.18.R

SMA

Sunny Central Storage SCS 3450 UP-XT

affected
0 - < 10.01.18.R

SMA

Sunny Central Storage SCS 3450 UP-XT-JP

affected
0 - < 10.01.18.R

SMA

Sunny Central Storage SCS 3450 UP-XT-US

affected
0 - < 10.01.18.R

SMA

Sunny Central Storage SCS 3600 UP

affected
0 - < 10.01.18.R

SMA

Sunny Central Storage SCS 3600 UP-US

affected
0 - < 10.01.18.R

SMA

Sunny Central Storage SCS 3600 UP-XT

affected
0 - < 10.01.18.R

SMA

Sunny Central Storage SCS 3600 UP-XT-US

affected
0 - < 10.01.18.R

SMA

Sunny Central Storage SCS 3800 UP

affected
0 - < 10.01.18.R

SMA

Sunny Central Storage SCS 3800 UP-US

affected
0 - < 10.01.18.R

SMA

Sunny Central Storage SCS 3800 UP-XT

affected
0 - < 10.01.18.R

SMA

Sunny Central Storage SCS 3800 UP-XT-US

affected
0 - < 10.01.18.R

SMA

Sunny Central Storage SCS 3950 UP

affected
0 - < 10.01.18.R

SMA

Sunny Central Storage SCS 3950 UP-US

affected
0 - < 10.01.18.R

SMA

Sunny Central Storage SCS 3950 UP-XT

affected
0 - < 10.01.18.R

SMA

Sunny Central Storage SCS 3950 UP-XT-US

affected
0 - < 10.01.18.R

Weaknesses (CWE)

CVSS v3.1 Details

CVSS v3.1 Vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N

Attack Vector

Network

Attack Complexity

Low

Privileges Required

Low

User Interaction

None

Scope

Unchanged

Confidentiality

Low

Integrity

Low

Availability

None

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now