The authenticated time setting capability of the firmware for Mennekes Smart / Premium Chargingpoints can be abused for command execution because OS command are improperly neutralized when certain fields are passed to the underlying OS.
CVSS
No CVSS.
References
Configurations
No configuration.
History
11 Mar 2025, 14:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-03-11 14:15
Updated : 2025-03-11 14:15
NVD link : CVE-2025-22367
Mitre link : CVE-2025-22367
CVE.ORG link : CVE-2025-22367
JSON object : View
Products Affected
No product.