CVE-2025-27575

CVSS 3.1 Score 5.3 of 10 (medium)

Details

Published Apr 15, 2025
Updated: Apr 16, 2025
CWE ID 639

Summary

CVE-2025-27575 is a vulnerability affecting EV chargers where an unauthenticated attacker can gain access to sensitive information. By knowing the charger ID, an attacker can obtain the charger version and its upgrading history, potentially leading to security risks or unauthorized upgrades. This vulnerability can allow unauthorized individuals to gain insights into the EV charging infrastructure, which could be exploited for malicious purposes. It is essential for EV charging station providers to address this vulnerability promptly to prevent potential attacks and safeguard their users' data.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share