TROYANOSYVIRUS
Back to CVEs

CVE-2025-55705

HIGH
7.3

Description

This vulnerability occurs when the system permits multiple simultaneous connections to the backend using the same charging station ID. This can result in unauthorized access, data inconsistency, or potential manipulation of charging sessions. The lack of proper session management and expiration control allows attackers to exploit this weakness by reusing valid charging station IDs to establish multiple sessions concurrently.

CVE Details

CVSS v3.1 Score7.3
SeverityHIGH
CVSS VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
Attack VectorNETWORK
ComplexityLOW
Privileges RequiredNONE
User InteractionNONE
Published1/22/2026
Last Modified2/12/2026
Sourcenvd
Honeypot Sightings0

Affected Products

evmapa:evmapa

Weaknesses (CWE)

CWE-613

IOC Correlations

No correlations recorded

This product uses data from the NVD API but is not endorsed or certified by the NVD.