CVE-2025-36753: SWD Interface Open on Growatt ShineLan-X
The SWD debug interface on the Growatt ShineLan-X communication dongle is available by default, allowing an attacker to attain debug access to the device and to extracting secrets or domains from within the device
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-36753?
CVE-2025-36753 has a high severity due to the potential for attackers to gain sensitive information through the SWD debug interface.
How do I fix CVE-2025-36753?
To fix CVE-2025-36753, disable the SWD debug interface on the Growatt ShineLan-X communication dongle.
What vulnerabilities does CVE-2025-36753 introduce?
CVE-2025-36753 allows attackers to access debug information, which could include secrets or sensitive data from the device.
Who is affected by CVE-2025-36753?
The vulnerability affects users of the Growatt ShineLan-X communication dongle specifically.
What is the impact of CVE-2025-36753 on device security?
CVE-2025-36753 significantly compromises device security by allowing unauthorized access to confidential information.