Home

Description

SolarEdge SE3680H  ships with an outdated Linux kernel containing unpatched vulnerabilities in core subsystems. An attacker with network or local access can exploit these flaws to achieve remote code execution, privilege escalation, or disclosure of sensitive information.

PUBLISHED Reserved 2025-04-15 | Published 2025-12-12 | Updated 2025-12-12 | Assigner DIVD




HIGH: 8.6CVSS:4.0/AV:P/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:L/SI:L/SA:L/S:N/V:D

Problem types

CWE-1104 — Use of Unmaintained Third Party Components

Product status

Default status
unaffected

4.0 (semver) before 4.22
affected

Credits

Alexandros Tokatlis (ENCS) finder

Victor Pasman (DIVD) analyst

References

csirt.divd.nl/CVE-2025-36745 third-party-advisory

csirt.divd.nl/DIVD-2025-00022/ third-party-advisory

cve.org (CVE-2025-36745)

nvd.nist.gov (CVE-2025-36745)

Download JSON

Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.