Vulnerabilidades em Growatt

38 resultados
CVE-2025-27939MEDIUMGrowatt Cloud portal Authorization Bypass Through User-Controlled KeyEPSS 0.7%CVE-2025-30512MEDIUMGrowatt Cloud portal External Control of System or Configuration SettingEPSS 0.5%CVE-2025-24315MEDIUMGrowatt Cloud portal Authorization Bypass Through User-Controlled KeyEPSS 0.5%CVE-2025-31945MEDIUMGrowatt Cloud portal Authorization Bypass Through User-Controlled KeyEPSS 0.5%CVE-2025-27719MEDIUMGrowatt Cloud portal Authorization Bypass Through User-Controlled KeyEPSS 0.5%CVE-2025-31360MEDIUMGrowatt Cloud portal Authorization Bypass Through User-Controlled KeyEPSS 0.4%CVE-2025-24297CRITICALGrowatt Cloud portal Cross-site ScriptingEPSS 0.4%CVE-2025-27938MEDIUMGrowatt Cloud portal Authorization Bypass Through User-Controlled KeyEPSS 0.4%CVE-2025-30514MEDIUMGrowatt Cloud portal Authorization Bypass Through User-Controlled KeyEPSS 0.4%CVE-2025-27568MEDIUMGrowatt Cloud portal Authorization Bypass Through User-Controlled KeyEPSS 0.4%CVE-2025-30254MEDIUMGrowatt Cloud portal Authorization Bypass Through User-Controlled KeyEPSS 0.4%CVE-2025-24487MEDIUMGrowatt Cloud portal Authorization Bypass Through User-Controlled KeyEPSS 0.4%CVE-2025-29757CRITICALAn incorrect authorisation check in the the 'plant transfer' function of the Growatt cloud service allowed a malicous attacker with a valid EPSS 0.4%CVE-2025-30511HIGHGrowatt Cloud Applications Cross-site ScriptingEPSS 0.3%CVE-2025-24850MEDIUMGrowatt Cloud portal Authorization Bypass Through User-Controlled KeyEPSS 0.3%CVE-2025-36752CRITICALUndocumented backup Account and No Password Configuration CapabilityEPSS 0.3%CVE-2025-36747CRITICALHardcoded FTP Credentials within the firmwareEPSS 0.3%CVE-2025-36753HIGHSWD Interface Open on Growatt ShineLan-XEPSS 0.3%CVE-2025-26857MEDIUMGrowatt Cloud portal Authorization Bypass Through User-Controlled KeyEPSS 0.3%CVE-2025-25276MEDIUMGrowatt Cloud portal Authorization Bypass Through User-Controlled KeyEPSS 0.3%