CVE-2025-27575
CVSS 3.1 Score 5.3 of 10 (medium)
Details
Summary
CVE-2025-27575 is a vulnerability affecting EV chargers where an unauthenticated attacker can gain access to sensitive information. By knowing the charger ID, an attacker can obtain the charger version and its upgrading history, potentially leading to security risks or unauthorized upgrades. This vulnerability can allow unauthorized individuals to gain insights into the EV charging infrastructure, which could be exploited for malicious purposes. It is essential for EV charging station providers to address this vulnerability promptly to prevent potential attacks and safeguard their users' data.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Cloud Applications