Security flaw threatens hundreds of solar power stations 

A security flaw in a device used to monitor solar performance metrics has put hundreds of solar power stations at risk of attack, according to cybersecurity firm VulnCheck.  

The vulnerable device, developed by Contec and sold under the SolarView brand, is used by approximately 30,000 small to medium-sized power stations. The flaw allows potentially malicious elements to be entered through user-supplied input, enabling remote attacks. Additionally, the devices are also susceptible to a newer command-injection vulnerability.  

While there are no known instances of this vulnerability being exploited, the exploit code has been available on GitHub since February 2023. 

Read the full article here.