PT-2018-18274 · Schneider Electric · Evlink Charging Station

Published

2018-07-03

·

Updated

2018-09-05

·

CVE-2018-7778

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: Schneider Electric Evlink Charging Station versions prior to v3.2.0-12 v1
Description: The issue in the Web Interface may allow a remote attacker to gain administrative privileges without properly authenticating remote users.
Recommendations: For versions prior to v3.2.0-12 v1, update to version v3.2.0-12 v1 or later to resolve the issue.

Fix

Missing Authentication

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2018-7778

Affected Products

Evlink Charging Station