CVE Details
Basic Information
| Title | CVE-2025-48414 Hard-coded web interface credentials in eCharge Hardy Barth cPH2 / cPP2 charging stations |
|---|---|
| Type | cve |
| Published | 2025-05-21T11:40:50 |
| Last Seen | 2025-05-21T11:59:48 |
CVSS Information
| Base Score | 0.0 () |
|---|---|
| Attack Vector | |
| Attack Complexity | |
| Privileges Required | |
| User Interaction | |
| Scope | |
| Confidentiality Impact | |
| Integrity Impact | |
| Availability Impact |
AI Analysis
| AI Description | The vulnerability involves hard-coded credentials in the web interface of eCharge Hardy Barth cPH2 / cPP2 charging stations, allowing unauthorized access to administrative and debug functionalities. This could potentially be exploited by attackers to gain control over the charging stations or access sensitive information. |
|---|---|
| AI Severity | High |
| Vendor | eCharge Hardy Barth |
| Product | cPH2 / cPP2 charging stations |
| Affected Version | Unknown |
Additional Information
| CVE List | CVE-2025-48414 |
|---|---|
| CWE List | CWE-798 |
| Bulletin Family | cve |
Description
There are several scripts in the web interface that are accessible via undocumented hard-coded credentials. The scripts provide access to additional administrative/debug functionality and are likely intended for debugging…
CVSS Score Summary
Base Score: %!f(string=#) ()