CVE-2026-20744

Der WebSocket-Endpunkt der Ladestation akzeptiert Verbindungen ohne ordnungsgemäße Authentifizierung, was zu einer Erhöhung von Berechtig…

criticalEPSS 0.8%

Description

The charging station websocket endpoint accepts connections without proper authentication, which could lead to privilege escalation.

Metrics

9.8
Source: nvd-v3
53.9 %
High — this CVE ranks above the median of all CVEs scored today (rank ≥ 36%).
Show all metrics
Severity
critical
no public PoC known
0.8 %
Low — model estimates < 1% exploitation likelihood.
Published
2026-07-10 22:07 UTC
CWE-284

Weakness classes (CWE)

  • CWE-284Pillar

    Improper Access Control

    The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.

    cwe.mitre.org →

References & sources

Linked advisories