Security Advisory

CVE-2025-22366

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2025-03-11 13:40:23
Last updated 2025-04-01 04:47:47
Assigner DIVD
CVSS score 8.7
State PUBLISHED

Description

The authenticated firmware update capability of the firmware for Mennekes Smart / Premium Chargingpoints can be abused for command execution because OS command are improperly neutralized when certain fields are passed to the underlying OS.