File Access Vulnerability in Sunny Boy Devices by SMA Solar Technology
CVE-2021-4459
6.5MEDIUM
What is CVE-2021-4459?
An authorized remote attacker can exploit a design flaw in the Sunny Boy devices by SMA Solar Technology, which allows them to access files and directories outside the designated web root. This unauthorized access could result in the exposure of sensitive system information, posing security risks and potential data breaches for users.
Affected Version(s)
Boy 3.0 0.0.0 < 3.10.27.R
Boy 3.6 0.0.0 < 3.10.27.R
Boy 4.0 0.0.0 < 3.10.27.R