Back to CVE List

CVE-2026-25113

HIGH SEVERITY

CVSS Score & Metrics

Base Score
7.5 / 10
Vector String
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Vulnerability Description

The WebSocket Application Programming Interface lacks restrictions on
the number of authentication requests. This absence of rate limiting may
allow an attacker to conduct denial-of-service attacks by suppressing
or mis-routing legitimate charger telemetry, or conduct brute-force
attacks to gain unauthorized access.

Vulnerability Details

Published Date
Last Modified
CWE ID
CWE-307
Source
NVD
Vendor
SWITCH EV
Product
swtchenergy.com

External References

Discussion (0)

Add Comment

No comments yet. Be the first!