WebSocket Authentication Vulnerability in Charging Stations by CISA
CVE-2026-95102
9.3CRITICAL
What is CVE-2026-95102?
The WebSocket endpoints in specific charging station models lack essential authentication mechanisms, enabling attackers to impersonate these stations. This oversight allows malicious actors to access sensitive data and perform actions without appropriate permissions, leading to potential privilege escalation and a severe compromise of the overall system's security.
Affected Version(s)
monta.app All versions
