CVE-2017-20020: Solar-Log 1000 Firmware
High severity, CVSS 8.8. EPSS: 0.4% chance of exploitation in the next 30 days.
A vulnerability, which was classified as problematic, has been found in Solare Solar-Log 2.8.4-56/3.5.2-85. Affected by this issue is some unknown functionality. The manipulation leads to cross site request forgery. The attack may be launched remotely. Upgrading to version 3.5.3-86 is able to address this issue. It is recommended to upgrade the affected component.
Affected products
- Solar-Log Solar-Log 1000 Firmware: version 2.8.4-56 only; version 3.5.2-85 only
- Solar-Log Solar-Log 1000 Pm+ Firmware: version 2.8.4-56 only; version 3.5.2-85 only
- Solar-Log Solar-Log 1200 Firmware: version 2.8.4-56 only; version 3.5.2-85 only
- Solar-Log Solar-Log 2000 Firmware: version 2.8.4-56 only; version 3.5.2-85 only
- Solar-Log Solar-Log 250 Firmware: version 2.8.4-56 only; version 3.5.2-85 only
- Solar-Log Solar-Log 300 Firmware: version 2.8.4-56 only; version 3.5.2-85 only
- Solar-Log Solar-Log 500 Firmware: version 2.8.4-56 only; version 3.5.2-85 only
- Solar-Log Solar-Log 800e Firmware: version 2.8.4-56 only; version 3.5.2-85 only
Published 2022-06-09. Last modified 2026-06-17.