Web Mapping Platform Vulnerability in Charging Station Authentication by Evoke Systems
CVE-2026-44622

6.9MEDIUM

Key Information:

Vendor

Evoke

Vendor
CVE Published:
25 June 2026

What is CVE-2026-44622?

The vulnerability arises from publicly accessible authentication identifiers for charging stations on web-based mapping platforms. This highlights a significant risk for unauthorized access to sensitive information regarding charging station operations, as attackers could exploit these identifiers to gain control over the systems. Organizations utilizing these charging stations should assess their security measures to mitigate potential threats stemming from this exposure.

Affected Version(s)

EVoke CSMS All versions

References

CVSS V4

Score:
6.9
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Khaled Sarieddine and Mohammad Ali Sayed reported this vulnerability to CISA.
.