Описание
Autel Maxi Charger Single firmware through V1.03.51 is vulnerable to OS command injection when processing OCPP GetDiagnostics requests. A malicious or compromised OCPP server can supply a crafted diagnostics URL that results in arbitrary command execution on the charging station.
EPSS
Процентиль: 66%
0.01215
Низкий
Дефекты
CWE-78
Связанные уязвимости
github
11 дней назад
Autel Maxi Charger Single firmware through V1.03.51 is vulnerable to OS command injection when processing OCPP GetDiagnostics requests. A malicious or compromised OCPP server can supply a crafted diagnostics URL that results in arbitrary command execution on the charging station.
EPSS
Процентиль: 66%
0.01215
Низкий
Дефекты
CWE-78