← Back

CVE-2024-50684

nvd nist
Published: Feb 26, 2025Modified: Jun 17, 2026

JSON object

Loading...
6.5
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:L/A:N
Exploitability: 2.2 / Impact: 4.2
Source: 134c704f-9b21-4f2e-91b3-4a467353bcc0 (Secondary)

Description

SunGrow iSolarCloud Android app V2.1.6.20241017 and prior uses an insecure AES key to encrypt client data (insufficient entropy). This may allow attackers to decrypt intercepted communications between the mobile app and iSolarCloud.

Affected (1)

1 product
Isolarcloud
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Before 2.1.6.20241104

References (1)

Timeline

No history available yet.