The pwrstudio web application of EV Charger (in the server in Circontrol Raption through 5.6.2) is vulnerable to OS command injection via three fields of the configuration menu for ntpserver0, ntpserver1, and pingip.
Metrics
Affected Vendors & Products
References
History
Tue, 04 Nov 2025 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Fri, 08 Nov 2024 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Pwrstudio
Pwrstudio ev Charger |
|
| Weaknesses | CWE-78 | |
| CPEs | cpe:2.3:a:pwrstudio:ev_charger:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Pwrstudio
Pwrstudio ev Charger |
|
| Metrics |
cvssV3_1
|
Fri, 08 Nov 2024 04:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The pwrstudio web application of EV Charger (in the server in Circontrol Raption through 5.6.2) is vulnerable to OS command injection via three fields of the configuration menu for ntpserver0, ntpserver1, and pingip. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published: 2024-11-08T00:00:00.000Z
Updated: 2025-11-04T18:14:16.990Z
Reserved: 2020-01-27T00:00:00.000Z
Link: CVE-2020-8007
Updated: 2025-11-04T18:14:16.990Z
Status : Awaiting Analysis
Published: 2024-11-08T05:15:05.300
Modified: 2025-11-04T19:15:40.587
Link: CVE-2020-8007
No data.