ZDI-CAN-26295: ZDI-25-328: (0Day) (Pwn2Own) WOLFBOX Level 2 EV Charger BLE Encryption Keys Uninitialized Variable Authentication Bypass Vulnerability
This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of WOLFBOX Level 2 EV Charger devices. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of cryptographic keys used in vendor-specific encrypted communications. The issue results from the lack of proper initialization of a variable prior to accessing it. An attacker can leverage this vulnerability to bypass authentication on the system.
Other sources
This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of WOLFBOX Level 2 EV Charger devices. Authentication is not required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 6.3. The following CVEs are assigned: CVE-2025-5749.
— ZDI
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-CAN-26295?
The severity of ZDI-CAN-26295 is critical due to the ability for network-adjacent attackers to bypass authentication.
How do I fix ZDI-CAN-26295?
To fix ZDI-CAN-26295, update your WOLFBOX Level 2 EV Charger to the latest firmware that addresses this vulnerability.
What types of devices are affected by ZDI-CAN-26295?
ZDI-CAN-26295 affects WOLFBOX Level 2 EV Charger devices specifically.
Can ZDI-CAN-26295 be exploited remotely?
No, ZDI-CAN-26295 can only be exploited by network-adjacent attackers.
What component of the WOLFBOX Level 2 EV Charger is vulnerable in ZDI-CAN-26295?
The vulnerability in ZDI-CAN-26295 exists within the handling of cryptographic keys used in the device.