The pwrstudio web application of EV Charger (in the server in Circontrol Raption through 5.6.2) is vulnerable to OS command injection via three fields of the configuration menu for ntpserver0, ntpserver1, and pingip.
                
            Metrics
Affected Vendors & Products
Advisories
    No advisories yet.
Fixes
    Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
        History
                    Fri, 08 Nov 2024 16:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | 
        
        Pwrstudio
         Pwrstudio ev Charger  | 
|
| Weaknesses | CWE-78 | |
| CPEs | cpe:2.3:a:pwrstudio:ev_charger:*:*:*:*:*:*:*:* | |
| Vendors & Products | 
        
        Pwrstudio
         Pwrstudio ev Charger  | 
|
| Metrics | 
        
        cvssV3_1
         
 
  | 
Fri, 08 Nov 2024 04:30:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Description | The pwrstudio web application of EV Charger (in the server in Circontrol Raption through 5.6.2) is vulnerable to OS command injection via three fields of the configuration menu for ntpserver0, ntpserver1, and pingip. | |
| References | 
         | 
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-11-08T15:16:05.106Z
Reserved: 2020-01-27T00:00:00
Link: CVE-2020-8007
Updated: 2024-11-08T15:15:50.393Z
Status : Awaiting Analysis
Published: 2024-11-08T05:15:05.300
Modified: 2024-11-08T19:01:03.880
Link: CVE-2020-8007
No data.
                        OpenCVE Enrichment
                    No data.