In Bender/ebee Charge Controllers in multiple versions are prone to Command injection via Web interface. An authenticated attacker could enter shell commands into some input fields that are executed with root privileges.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: CERTVDE

Published: 2022-04-27T15:15:34.774811Z

Updated: 2024-09-17T01:46:57.289Z

Reserved: 2021-06-10T00:00:00

Link: CVE-2021-34602

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2022-04-27T16:15:11.267

Modified: 2022-05-11T17:46:44.410

Link: CVE-2021-34602

cve-icon Redhat

No data.