CVE-2025-22366
Severity CVSS v4.0:
HIGH
Type:
CWE-78
OS Command Injections
Publication date:
11/03/2025
Last modified:
11/03/2025
Description
The authenticated firmware update capability of the firmware for Mennekes Smart / Premium Chargingpoints can be abused for command execution because OS command are improperly neutralized when certain fields are passed to the underlying OS.