CVE-2026-20744
Der WebSocket-Endpunkt der Ladestation akzeptiert Verbindungen ohne ordnungsgemäße Authentifizierung, was zu einer Erhöhung von Berechtig…
criticalEPSS 0.8%
Description
The charging station websocket endpoint accepts connections without proper authentication, which could lead to privilege escalation.
Metrics
Show all metrics
Severity
critical
94.08
no public PoC known
9.8
9.3
Published
2026-07-10 22:07 UTC
CWE-284
Weakness classes (CWE)
CWE-284Pillar
Improper Access Control
The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.
cwe.mitre.org →