CVE-2012-5863: Sinapsitech Esolar Duo Photovoltaic System Monitor
High severity, CVSS 10.0. EPSS: 24.8% chance of exploitation in the next 30 days.
These Sinapsi devices do not check for special elements in commands sent to the system. By accessing certain pages with administrative privileges that do not require authentication within the device, attackers can execute arbitrary, unexpected, or dangerous commands directly onto the operating system.
Affected products
- Sinapsitech Esolar Duo Photovoltaic System Monitor
- Sinapsitech Esolar Light Photovoltaic System Monitor
- Sinapsitech Esolar Photovoltaic System Monitor
- Sinapsitech Sinapsi Firmware: up to and including 2.0.2870
Published 2012-11-23. Last modified 2026-06-16.