CNNVD-202509-1829 Information

CNNVD ID

CNNVD-202509-1829

CVE-2025-10371

  • CNNVD Published: 2025-09-13

Description (Chinese)

eCharge Hardy Barth Salia PLCC是德国eCharge公司的一个充电桩控制器。 eCharge Hardy Barth Salia PLCC 2.2.0版本存在代码问题漏洞,该漏洞源于对文件/api.php中参数setrfidlist的错误操作,可能导致任意文件上传。

Description (English)

eCharge Hardy Barth Salia PLCC is a charger for eCharge in Germany. Version 2.2.0 of eCharge Hardy Barth Salia PLCC has a code problem loophole, which stems from a mishandling of the parameter setrfidlist in document/api.php, which may lead to the uploading of any document.

Hazard Level

Medium

Vulnerability Type

代码问题

Affected Vendor

eCharge

Published

2025-09-13

Last Modified

2026-02-24

References

https://vuldb.com/?ctiid.323779 https://vuldb.com/?id.323779 https://github.com/YZS17/CVE/blob/main/Salia_PLCC/file-write-api.php.md https://github.com/YZS17/CVE/blob/main/Salia_PLCC/file-write-api.php.md#poc https://vuldb.com/?submit.643535 https://access.redhat.com/security/cve/cve-2025-10371

Share on: