First published: Wed Apr 23 2025(Updated: )
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of eCharge Hardy Barth cPH2 charging stations. Authentication is not required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 8.8. The following CVEs are assigned: CVE-2025-3882.
Affected Software | Affected Version | How to fix |
---|---|---|
eCharge Hardy Barth cPH2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
ZDI-25-248 has been assigned a CVSS rating of 8.8, indicating high severity.
ZDI-25-248 can be exploited by network-adjacent attackers to execute arbitrary code without authentication.
The affected product by ZDI-25-248 is the eCharge Hardy Barth cPH2 charging station.
No, authentication is not required to exploit the ZDI-25-248 vulnerability.
The potential impact of ZDI-25-248 includes arbitrary code execution on the affected installations.