CVE 8.7 HIGH

Plaintext Storage of a Password in LITEON IC48A and IC80A EV Chargers_CVE-2025-7357

8.7 / 10
HIGH
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N

Description

LITEON IC48A firmware versions prior to 01.00.19r and LITEON IC80A firmware versions prior to 01.01.12e store FTP-server-access-credentials in cleartext in their system logs.

Basic Information

ID CVE-2025-7357
Source icscert
Published Jul 16, 2025 at 15:56
Modified Jul 18, 2025 at 14:38

Affected Product

Vendor LITEON
Product IC48A EV Charger
Affected Versions LITEON IC48A EV Charger 0
LITEON IC80A EV Charger 0

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.