{
    "id": "CVE-2012-5864",
    "published": "2012-11-23 12:09:58",
    "last_modified": "2026-06-16 23:47:29",
    "cvss_score": "9.4",
    "cvss_severity": "HIGH",
    "cvss_version": "2.0",
    "cvss_vector": "AV:N/AC:L/Au:N/C:C/I:C/A:N",
    "cwe": "CWE-287",
    "description": "These Sinapsi devices \ndo not check if users that visit pages within the device have properly \nauthenticated. By directly visiting the pages within the device, \nattackers can gain unauthorized access with administrative privileges.",
    "epss_score": "0.04905",
    "epss_percentile": "0.91854",
    "kev": 0,
    "kev_due": null,
    "has_exploit": 1,
    "updated_at": "2026-10-06 18:17:10",
    "priority": {
        "rank": 2,
        "label": "Patch early",
        "why": "A public exploit exists."
    },
    "products": [
        {
            "vendor": "sinapsitech",
            "product": "esolar_duo_photovoltaic_system_monitor"
        },
        {
            "vendor": "sinapsitech",
            "product": "esolar_light_photovoltaic_system_monitor"
        },
        {
            "vendor": "sinapsitech",
            "product": "esolar_photovoltaic_system_monitor"
        },
        {
            "vendor": "sinapsitech",
            "product": "sinapsi_firmware"
        }
    ],
    "kev_detail": null,
    "exploits": [
        {
            "source": "exploit-db",
            "ref_id": "21273",
            "title": "Ezylog Photovoltaic Management Server - Multiple Vulnerabilities",
            "date": "2012-09-12",
            "url": "https://www.exploit-db.com/exploits/21273"
        }
    ],
    "refs_list": [
        "http://archives.neohapsis.com/archives/bugtraq/2012-09/0045.html",
        "http://www.exploit-db.com/exploits/21273/",
        "http://www.sinapsitech.it/default.asp?active_page_id=78&news_id=88",
        "https://exchange.xforce.ibmcloud.com/vulnerabilities/80200",
        "https://www.cisa.gov/news-events/ics-advisories/icsa-12-325-01",
        "http://archives.neohapsis.com/archives/bugtraq/2012-09/0045.html",
        "http://www.exploit-db.com/exploits/21273/",
        "http://www.sinapsitech.it/default.asp?active_page_id=78&news_id=88",
        "http://www.us-cert.gov/control_systems/pdf/ICSA-12-325-01.pdf",
        "https://exchange.xforce.ibmcloud.com/vulnerabilities/80203"
    ]
}