CVE-2025-48414 Hard-coded web interface credentials in eCharge Hardy Barth cPH2 / cPP2 charging stations

CVE Details

Basic Information

Title CVE-2025-48414 Hard-coded web interface credentials in eCharge Hardy Barth cPH2 / cPP2 charging stations
Type cve
Published 2025-05-21T11:40:50
Last Seen 2025-05-21T11:59:48

CVSS Information

Base Score 0.0 ()
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact

AI Analysis

AI Description The vulnerability involves hard-coded credentials in the web interface of eCharge Hardy Barth cPH2 / cPP2 charging stations, allowing unauthorized access to administrative and debug functionalities. This could potentially be exploited by attackers to gain control over the charging stations or access sensitive information.
AI Severity High
Vendor eCharge Hardy Barth
Product cPH2 / cPP2 charging stations
Affected Version Unknown

Additional Information

CVE List CVE-2025-48414
CWE List CWE-798
Bulletin Family cve

Description

There are several scripts in the web interface that are accessible via undocumented hard-coded credentials. The scripts provide access to additional administrative/debug functionality and are likely intended for debugging…

CVSS Score Summary

Base Score: %!f(string=#) ()

View Full CVE Details

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.