Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Cloud portal — Vulnerabilities & Security Advisories 30

All 30 CVE vulnerabilities found in Cloud portal, with AI-generated Chinese analysis, references, and POCs.

This page provides vulnerability aggregation for the Cloud portal product, focusing on Common Weakness Enumeration (CWE) classifications and associated Common Vulnerabilities and Exposures (CVE) records. It collects data regarding security flaws, misconfigurations, and implementation errors identified within the cloud-based management interface, covering vulnerability reports from 2018 through 2024. This timeframe includes both recent critical patches and historical data relevant to long-term security auditing. Users can utilize this resource to track a vendor's security advisories as they are published, providing insight into the responsiveness and remediation speed of the development team. Additionally, the page allows researchers to understand specific weakness classes by analyzing patterns in how the product handles authentication, data encryption, and access control. Security professionals can also look up a product's vulnerability history to assess risk levels over time, identifying recurring issues or systemic architectural weaknesses. This aggregated view helps organizations evaluate the overall security posture of their cloud infrastructure providers without needing to manually cross-reference multiple disparate sources. The data is organized to facilitate efficient analysis, enabling teams to prioritize mitigation efforts based on severity and exposure. By centralizing these details, the page supports proactive threat modeling and compliance verification processes essential for maintaining secure cloud environments.

Vendor: Growatt

CVE IDTitleCVSSSeverityPublished
CVE-2025-27929 Growatt Cloud portal Authorization Bypass Through User-Controlled Key CWE-639 5.3 Medium2025-04-15
CVE-2025-24315 Growatt Cloud portal Authorization Bypass Through User-Controlled Key CWE-639 5.3 Medium2025-04-15
CVE-2025-27561 Growatt Cloud portal Authorization Bypass Through User-Controlled Key CWE-639 5.3 Medium2025-04-15
CVE-2025-30257 Growatt Cloud portal Authorization Bypass Through User-Controlled Key CWE-639 5.3 Medium2025-04-15
CVE-2025-31147 Growatt Cloud portal Authorization Bypass Through User-Controlled Key CWE-639 5.3 Medium2025-04-15
CVE-2025-31360 Growatt Cloud portal Authorization Bypass Through User-Controlled Key CWE-639 6.5 Medium2025-04-15
CVE-2025-30512 Growatt Cloud portal External Control of System or Configuration Setting CWE-15 6.5 Medium2025-04-15
CVE-2025-27927 Growatt Cloud portal Authorization Bypass Through User-Controlled Key CWE-639 5.3 Medium2025-04-15
CVE-2025-24297 Growatt Cloud portal Cross-site Scripting CWE-79 9.8 Critical2025-04-15
CVE-2025-30510 Growatt Cloud portal Insufficient Type Distinction CWE-351 9.8 Critical2025-04-15
CVE-2025-24850 Growatt Cloud portal Authorization Bypass Through User-Controlled Key CWE-639 5.3 Medium2025-04-15
CVE-2025-25276 Growatt Cloud portal Authorization Bypass Through User-Controlled Key CWE-639 5.3 Medium2025-04-15
CVE-2025-27565 Growatt Cloud portal Authorization Bypass Through User-Controlled Key CWE-639 5.3 Medium2025-04-15
CVE-2025-27575 Growatt Cloud portal Authorization Bypass Through User-Controlled Key CWE-639 5.3 Medium2025-04-15
CVE-2025-31950 Growatt Cloud portal Authorization Bypass Through User-Controlled Key CWE-639 5.3 Medium2025-04-15
CVE-2025-31945 Growatt Cloud portal Authorization Bypass Through User-Controlled Key CWE-639 5.3 Medium2025-04-15
CVE-2025-26857 Growatt Cloud portal Authorization Bypass Through User-Controlled Key CWE-639 5.3 Medium2025-04-15
CVE-2025-27719 Growatt Cloud portal Authorization Bypass Through User-Controlled Key CWE-639 5.3 Medium2025-04-15
CVE-2025-31654 Growatt Cloud portal Authorization Bypass Through User-Controlled Key CWE-639 5.3 Medium2025-04-15
CVE-2025-30514 Growatt Cloud portal Authorization Bypass Through User-Controlled Key CWE-639 5.3 Medium2025-04-15
CVE-2025-27938 Growatt Cloud portal Authorization Bypass Through User-Controlled Key CWE-639 5.3 Medium2025-04-15
CVE-2025-27939 Growatt Cloud portal Authorization Bypass Through User-Controlled Key CWE-639 7.5 High2025-04-15
CVE-2025-30254 Growatt Cloud portal Authorization Bypass Through User-Controlled Key CWE-639 5.3 Medium2025-04-15
CVE-2025-27568 Growatt Cloud portal Authorization Bypass Through User-Controlled Key CWE-639 5.3 Medium2025-04-15
CVE-2025-24487 Growatt Cloud portal Authorization Bypass Through User-Controlled Key CWE-639 5.3 Medium2025-04-15
CVE-2025-31941 Growatt Cloud portal Authorization Bypass Through User-Controlled Key CWE-639 5.3 Medium2025-04-15
CVE-2025-31357 Growatt Cloud portal Authorization Bypass Through User-Controlled Key CWE-639 5.3 Medium2025-04-15
CVE-2025-31949 Growatt Cloud portal Authorization Bypass Through User-Controlled Key CWE-639 5.3 Medium2025-04-15
CVE-2025-31933 Growatt Cloud Applications Authorization Bypass Through User-Controlled Key CWE-639 5.3 Medium2025-04-15
CVE-2025-30511 Growatt Cloud Applications Cross-site Scripting CWE-79 8.8 High2025-04-15

All 30 known CVE vulnerabilities affecting Cloud portal with full Chinese analysis, references, and POCs where available.