CVE 7.3 HIGH

EVMAPA Insufficient Session Expiration_CVE-2025-55705

7.3 / 10
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L

Description

This vulnerability occurs when the system permits multiple simultaneous
connections to the backend using the same charging station ID. This can
result in unauthorized access, data inconsistency, or potential
manipulation of charging sessions. The lack of proper session management
and expiration control allows attackers to exploit this weakness by
reusing valid charging station IDs to establish multiple sessions
concurrently.

Basic Information

ID CVE-2025-55705
Source icscert
Published Jan 22, 2026 at 22:32
Modified Jan 23, 2026 at 20:10

Affected Product

Vendor EVMAPA
Product EVMAPA
Version All versions
Affected Versions EVMAPA EVMAPA All versions

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.