CVE-2025-22368 Information
Mar 12, 2025
cve
Description
The authenticated SCU firmware command of the firmware for Mennekes Smart / Premium Chargingpoints can be abused for command execution because OS commands are improperly neutralized when certain fields are passed to the underlying OS.
Reference
https://csirt.divd.nl/CVE-2025-22368 https://csirt.divd.nl/DIVD-2025-00003 https://www.mennekes.nl/fileadmin/MEN-Deutschland/emobility/04_software/06_smart_premium/Release_Notes_for_2.15_06.03.2025.pdf
Share on: