CVE-2019-13529: SMA Sunny Webbox Firmware
High severity, CVSS 8.8. EPSS: 3.1% chance of exploitation in the next 30 days.
An attacker could send a malicious link to an authenticated operator, which may allow remote attackers to perform actions with the permissions of the user on the Sunny WebBox Firmware Version 1.6 and prior. This device uses IP addresses to maintain communication after a successful login, which would increase the ease of exploitation.
Affected products
- SMA Sunny Webbox Firmware: up to and including 1.6
Published 2019-10-09. Last modified 2026-07-13.