Description
The SolarEdge mySolarEdge application before 2.20.1 for Android has a certificate verification issue that allows a Machine-in-the-middle (MitM) attacker to read and alter all network traffic between the application and the server.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-25842 | The SolarEdge mySolarEdge application before 2.20.1 for Android has a certificate verification issue that allows a Machine-in-the-middle (MitM) attacker to read and alter all network traffic between the application and the server. |
References
History
Fri, 27 Feb 2026 03:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:solaredge:mysolaredge:*:*:*:*:*:*:*:* | |
| Metrics |
ssvc
|
Tue, 17 Jun 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Solaredge
Solaredge mysolaredge |
|
| CPEs | cpe:2.3:a:solaredge:mysolaredge:*:*:*:*:*:android:*:* | |
| Vendors & Products |
Solaredge
Solaredge mysolaredge |
Wed, 28 Aug 2024 15:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-125 |
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-28T13:58:03.507Z
Reserved: 2024-03-10T00:00:00.000Z
Link: CVE-2024-28756
Updated: 2024-08-02T00:56:58.075Z
Status : Analyzed
Published: 2024-03-21T21:15:10.550
Modified: 2025-06-17T13:47:54.133
Link: CVE-2024-28756
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD