OS Command Injection Vulnerability in Schneider Electric Charging Station
CVE-2025-5743
7HIGH
What is CVE-2025-5743?
An OS command injection vulnerability has been identified in Schneider Electric's Charging Station, permitting an authenticated user to modify configuration parameters on the web server. This flaw can be exploited to gain unauthorized remote control over the charging station. Proper validation and sanitization measures should be implemented to mitigate this security risk. Users are advised to review their configurations and apply security patches promptly.
Affected Version(s)
EVLink WallBox All Versions