WebSocket 端点缺乏适当的身份验证机制,攻击者可利用此弱点冒充充电桩。由此,攻击者能够未经授权地访问敏感数据或执行未授权操作。由于无需进行身份验证,这可能导致权限提升,并可能危及整个系统的安全性。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-97363 | 7.5 HIGH | Monta monta.app Improper Restriction of Excessive Authentication Attempts |
| CVE-2026-97212 | 7.3 HIGH | Monta monta.app Insufficient Session Expiration |
| CVE-2026-93474 | 6.5 MEDIUM | Monta monta.app Insufficiently Protected Credentials |
No comments yet