{ "id": "CVE-2024-4622", "sourceIdentifier": "ics-cert@hq.dhs.gov", "published": "2024-05-15T17:15:16.010", "lastModified": "2024-05-15T17:15:16.010", "vulnStatus": "Received", "descriptions": [ { "lang": "en", "value": "If misconfigured, alpitronic Hypercharger EV charging devices can expose a web interface \nprotected by authentication. If the default credentials are not changed,\n an attacker can use public knowledge to access the device as an \nadministrator." } ], "metrics": {}, "weaknesses": [ { "source": "ics-cert@hq.dhs.gov", "type": "Primary", "description": [ { "lang": "en", "value": "CWE-1392" } ] } ], "references": [ { "url": "https://www.cisa.gov/news-events/ics-advisories/icsa-24-130-02", "source": "ics-cert@hq.dhs.gov" } ] }