Home

Description

CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability exists that could cause arbitrary file reads from the charging station. The exploitation of this vulnerability does require an authenticated session of the web server.

PUBLISHED Reserved 2025-06-05 | Published 2025-06-10 | Updated 2025-06-10 | Assigner schneider




MEDIUM: 6.9CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N

MEDIUM: 4.9CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N

Problem types

CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

Product status

Default status
unaffected

All Versions
affected

References

download.schneider-electric.com/...Name=SEVD-2025-161-03.pdf

cve.org (CVE-2025-5741)

nvd.nist.gov (CVE-2025-5741)

Download JSON