CVE Database
/

CVE-2025-7768

Back to search

CVE-2025-7768

Published: Aug 6, 2025

Modified: Aug 6, 2025

PUBLISHED

Description

Tigo Energy's Cloud Connect Advanced (CCA) device contains hard-coded credentials that allow unauthorized users to gain administrative access. This vulnerability enables attackers to escalate privileges and take full control of the device, potentially modifying system settings, disrupting solar energy production, and interfering with safety mechanisms.

VendorProductVersions

Tigo Energy

Cloud Connect Advanced

affected
0 - <= 4.0.1

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now