Sma Sunny Webbox Firmware vulnerabilities
2 known vulnerabilities affecting sma/sunny_webbox_firmware.
Total CVEs
2
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
HIGH1MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2019-13529P3HIGHCVSS 8.8PoC≤ 1.62019-10-09
CVE-2019-13529 [HIGH] CWE-352 CVE-2019-13529: An attacker could send a malicious link to an authenticated operator, which may allow remote attacke
An attacker could send a malicious link to an authenticated operator, which may allow remote attackers to perform actions with the permissions of the user on the Sunny WebBox Firmware Version 1.6 and prior. This device uses IP addresses to maintain communication after a successful login, which would increase the ease of exploitation.
nvd
CVE-2024-1890P4MEDIUMCVSS 5.4≤ 1.612024-02-26
CVE-2024-1890 [MEDIUM] CWE-1021 CVE-2024-1890: Vulnerability whereby an attacker could send a malicious link to an authenticated operator, which co
Vulnerability whereby an attacker could send a malicious link to an authenticated operator, which could allow remote attackers to perform a clickjacking attack on Sunny WebBox firmware version 1.6.1 and earlier.
nvd