6.9

CVSS4.0

CVE-2025-31950 - Growatt Cloud portal Authorization Bypass Through User-Controlled Key

An unauthenticated attacker can obtain EV charger energy consumption information of other users.

๐Ÿ“… Published: April 15, 2025, 9:16 p.m. ๐Ÿ”„ Last Modified: Nov. 12, 2025, 4:17 p.m.

6.9

CVSS4.0

CVE-2025-31945 - Growatt Cloud portal Authorization Bypass Through User-Controlled Key

An unauthenticated attacker can obtain other users' charger information.

๐Ÿ“… Published: April 15, 2025, 9:14 p.m. ๐Ÿ”„ Last Modified: Nov. 12, 2025, 4:13 p.m.

6.9

CVSS4.0

CVE-2025-26857 - Growatt Cloud portal Authorization Bypass Through User-Controlled Key

Unauthenticated attackers can rename arbitrary devices of arbitrary users (i.e., EV chargers).

๐Ÿ“… Published: April 15, 2025, 9:12 p.m. ๐Ÿ”„ Last Modified: Nov. 14, 2025, 6:13 p.m.

0.0

CVE-2025-31942 -

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority because it is Unused

๐Ÿ“… Published: April 15, 2025, 9:11 p.m. ๐Ÿ”„ Last Modified: Feb. 13, 2026, 6:11 p.m.

6.9

CVSS4.0

CVE-2025-27719 - Growatt Cloud portal Authorization Bypass Through User-Controlled Key

Unauthenticated attackers can query an API endpoint and get device details.

๐Ÿ“… Published: April 15, 2025, 9:09 p.m. ๐Ÿ”„ Last Modified: Nov. 14, 2025, 6:12 p.m.

6.9

CVSS4.0

CVE-2025-31654 - Growatt Cloud portal Authorization Bypass Through User-Controlled Key

An attacker can get information about the groups of the smart home devices for arbitrary users (i.e., "rooms").

๐Ÿ“… Published: April 15, 2025, 9:07 p.m. ๐Ÿ”„ Last Modified: Nov. 12, 2025, 4:12 p.m.

6.9

CVSS4.0

CVE-2025-30514 - Growatt Cloud portal Authorization Bypass Through User-Controlled Key

Unauthenticated attackers can obtain restricted information about a user's smart device collections (i.e., "scenes").

๐Ÿ“… Published: April 15, 2025, 9:05 p.m. ๐Ÿ”„ Last Modified: Nov. 12, 2025, 6:48 p.m.

6.9

CVSS4.0

CVE-2025-27938 - Growatt Cloud portal Authorization Bypass Through User-Controlled Key

Unauthenticated attackers can obtain restricted information about a user's smart device collections (i.e., "rooms").

๐Ÿ“… Published: April 15, 2025, 9:03 p.m. ๐Ÿ”„ Last Modified: Nov. 12, 2025, 6:53 p.m.

6.9

CVSS4.0

CVE-2025-27939 - Growatt Cloud portal Authorization Bypass Through User-Controlled Key

An attacker can change registered email addresses of other users and take over arbitrary accounts.

๐Ÿ“… Published: April 15, 2025, 8:59 p.m. ๐Ÿ”„ Last Modified: Nov. 12, 2025, 6:53 p.m.

7.8

CVSS3.1

CVE-2025-1274 - RCS File Parsing Out-of-Bounds Write Vulnerability

A maliciously crafted RCS file, when parsed through Autodesk Revit, can force an Out-of-Bounds Write vulnerability. A malicious actor may leverage this vulnerability to cause a crash, cause data corruption, or execute arbitrary code in the context of the current process.

๐Ÿ“… Published: April 15, 2025, 8:58 p.m. ๐Ÿ”„ Last Modified: Feb. 26, 2026, 6:28 p.m.
Total resulsts: 346157
Page 5504 of 34,616
ยซ previous page ยป next page
Filters