CVE-2025-36748 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

ShineLan-X contains a stored cross site scripting (XSS) vulnerability in the local configuration web server. The JavaScript code snippet can be inserted in the…
High CVSS: 8.4

CVE-2025-36748

ShineLan-X contains a stored cross site scripting (XSS) vulnerability in the local configuration web server. The JavaScript code snippet can be inserted in the communication module’s settings center. This may allow attackers to force a legitimate user’s browser’s JavaScript engine to run malicious code.
Vendor
Growatt
Product
Shine Lan-x Firmware
CWE
CWE-79
Yayın Tarihi
2025-12-13 16:16:53
Güncelleme
2026-01-14 18:05:12
Source Identifier
csirt@divd.nl
KEV Date Added
-

Kategoriler

Referanslar