CVE-2025-7768

Tigo Energy's Cloud Connect Advanced (CCA) device contains hard-coded credentials that allow unauthorized users to gain administrative access. This vulnerability enables attackers to escalate privileges and take full control of the device, potentially modifying system settings, disrupting solar energy production, and interfering with safety mechanisms.
CVSS

No CVSS.

Configurations

No configuration.

History

06 Aug 2025, 21:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-08-06 21:15

Updated : 2025-08-06 21:15


NVD link : CVE-2025-7768

Mitre link : CVE-2025-7768


JSON object : View

Products Affected

No product.

CWE
CWE-798

Use of Hard-coded Credentials