CVE-2018-7778: Critical severity Schneider-electric Evlink Charging Station Firmware vulnerability
In Schneider Electric Evlink Charging Station versions prior to v3.2.0-12v1, the Web Interface has an issue that may allow a remote attacker to gain administrative privileges without properly authenticating remote users.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Schneider Electric Evlink Charging Station Web Interfaceto a version that resolves this vulnerability.Fixed in v3.2.0-12_v1
Event History
Frequently Asked Questions
What is the severity of CVE-2018-7778?
CVE-2018-7778 is classified as a high severity vulnerability due to its potential for unauthorized administrative access.
How do I fix CVE-2018-7778?
To fix CVE-2018-7778, users should upgrade the Schneider Electric Evlink Charging Station firmware to version 3.2.0-12_v1 or later.
What attack vector is associated with CVE-2018-7778?
CVE-2018-7778 can be exploited remotely through the vulnerable web interface of the Evlink Charging Station.
Who is affected by CVE-2018-7778?
CVE-2018-7778 affects users of Schneider Electric Evlink Charging Station firmware prior to version 3.2.0-12_v1.
What impact can CVE-2018-7778 have on users?
CVE-2018-7778 may allow a remote attacker to gain unauthorized administrative privileges, posing a significant security risk.