CVE-2025-36744
Severity CVSS v4.0:
LOW
Type:
Unavailable / Other
Publication date:
12/12/2025
Last modified:
23/12/2025
Description
SolarEdge SE3680H has unauthenticated disclosure of sensitive information during the bootloader loop. While the device repeatedly initializes and waits for boot instructions, the bootloader emits diagnostic output this behavior can leak operating system information.
Impact
Base Score 4.0
2.40
Severity 4.0
LOW
Base Score 3.x
2.40
Severity 3.x
LOW
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:solaredge:se3680h_firmware:*:*:*:*:*:*:*:* | 4.0 (including) | 4.22 (excluding) |
| cpe:2.3:h:solaredge:se3680h:-:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



