CWE-78: I Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability exists that could cause remote control over the charging station when an authenticated user modifies configuration parameters on the web server.
Published: 2025-06-10
Updated: 2025-06-12
Base Score: 6.8
Vector: CVSS2#AV:N/AC:L/Au:M/C:P/I:C/A:N
Severity: Medium
Base Score: 5.5
Vector: CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:H/A:N
Severity: Medium
Base Score: 7
Vector: CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:L/VI:H/VA:N/SC:N/SI:N/SA:N
Severity: High
EPSS: 0.00518