CVE-2025-31930
Published: May 13, 2025
Modified: May 13, 2025
CVSS v3.1
8.8
Description
A vulnerability has been identified in IEC 1Ph 7.4kW Child socket (8EM1310-2EH04-0GA0) (All versions < V2.135), IEC 1Ph 7.4kW Child socket/ shutter (8EM1310-2EN04-0GA0) (All versions < V2.135), IEC 1Ph 7.4kW Parent cable 7m (8EM1310-2EJ04-3GA1) (All versions < V2.135), IEC 1Ph 7.4kW Parent cable 7m incl. SIM (8EM1310-2EJ04-3GA2) (All versions < V2.135), IEC 1Ph 7.4kW Parent socket (8EM1310-2EH04-3GA1) (All versions < V2.135), IEC 1Ph 7.4kW Parent socket incl. SIM (8EM1310-2EH04-3GA2) (All versions < V2.135), IEC 1Ph 7.4kW Parent socket/ shutter (8EM1310-2EN04-3GA1) (All versions < V2.135), IEC 1Ph 7.4kW Parent socket/ shutter SIM (8EM1310-2EN04-3GA2) (All versions < V2.135), IEC 3Ph 22kW Child cable 7m (8EM1310-3EJ04-0GA0) (All versions < V2.135), IEC 3Ph 22kW Child socket (8EM1310-3EH04-0GA0) (All versions < V2.135), IEC 3Ph 22kW Child socket/ shutter (8EM1310-3EN04-0GA0) (All versions < V2.135), IEC 3Ph 22kW Parent cable 7m (8EM1310-3EJ04-3GA1) (All versions < V2.135), IEC 3Ph 22kW Parent cable 7m incl. SIM (8EM1310-3EJ04-3GA2) (All versions < V2.135), IEC 3Ph 22kW Parent socket (8EM1310-3EH04-3GA1) (All versions < V2.135), IEC 3Ph 22kW Parent socket incl. SIM (8EM1310-3EH04-3GA2) (All versions < V2.135), IEC 3Ph 22kW Parent socket/ shutter (8EM1310-3EN04-3GA1) (All versions < V2.135), IEC 3Ph 22kW Parent socket/ shutter SIM (8EM1310-3EN04-3GA2) (All versions < V2.135), IEC ERK 3Ph 22 kW Child cable 7m (8EM1310-3FJ04-0GA0) (All versions < V2.135), IEC ERK 3Ph 22 kW Child cable 7m (8EM1310-3FJ04-0GA1) (All versions < V2.135), IEC ERK 3Ph 22 kW Child cable 7m (8EM1310-3FJ04-0GA2) (All versions < V2.135), IEC ERK 3Ph 22 kW Child socket (8EM1310-3FH04-0GA0) (All versions < V2.135), IEC ERK 3Ph 22 kW Parent socket (8EM1310-3FH04-3GA1) (All versions < V2.135), IEC ERK 3Ph 22 kW Parent socket incl. SI (8EM1310-3FH04-3GA2) (All versions < V2.135), UL Commercial Cellular 48A NTEP (8EM1310-5HF14-1GA2) (All versions < V2.135), UL Commercial Child 40A w/ 15118 HW (8EM1310-4CF14-0GA0) (All versions < V2.135), UL Commercial Child 48A BA Compliant (8EM1315-5CG14-0GA0) (All versions < V2.135), UL Commercial Child 48A w/ 15118 HW (8EM1310-5CF14-0GA0) (All versions < V2.135), UL Commercial Parent 40A with Simcard (8EM1310-4CF14-1GA2) (All versions < V2.135), UL Commercial Parent 48A (USPS) (8EM1317-5CG14-1GA2) (All versions < V2.135), UL Commercial Parent 48A BA Compliant (8EM1315-5CG14-1GA2) (All versions < V2.135), UL Commercial Parent 48A with Simcard BA (8EM1310-5CF14-1GA2) (All versions < V2.135), UL Commercial Parent 48A, 15118, 25ft (8EM1310-5CG14-1GA1) (All versions < V2.135), UL Commercial Parent 48A, 15118, 25ft (8EM1314-5CG14-2FA2) (All versions < V2.135), UL Commercial Parent 48A, 15118, 25ft (8EM1315-5HG14-1GA2) (All versions < V2.135), UL Commercial Parent 48A,15118 25ft Sim (8EM1310-5CG14-1GA2) (All versions < V2.135), VersiCharge Blue™ 80A AC Cellular (8EM1315-7BG16-1FH2) (All versions < V2.135). Affected devices contain Modbus service enabled by default. This could allow an attacker connected to the same network to remotely control the EV charger.
| Vendor | Product | Versions |
|---|---|---|
Siemens | IEC 1Ph 7.4kW Child socket | affected 0 - < V2.135 |
Siemens | IEC 1Ph 7.4kW Child socket/ shutter | affected 0 - < V2.135 |
Siemens | IEC 1Ph 7.4kW Parent cable 7m | affected 0 - < V2.135 |
Siemens | IEC 1Ph 7.4kW Parent cable 7m incl. SIM | affected 0 - < V2.135 |
Siemens | IEC 1Ph 7.4kW Parent socket | affected 0 - < V2.135 |
Siemens | IEC 1Ph 7.4kW Parent socket incl. SIM | affected 0 - < V2.135 |
Siemens | IEC 1Ph 7.4kW Parent socket/ shutter | affected 0 - < V2.135 |
Siemens | IEC 1Ph 7.4kW Parent socket/ shutter SIM | affected 0 - < V2.135 |
Siemens | IEC 3Ph 22kW Child cable 7m | affected 0 - < V2.135 |
Siemens | IEC 3Ph 22kW Child socket | affected 0 - < V2.135 |
Siemens | IEC 3Ph 22kW Child socket/ shutter | affected 0 - < V2.135 |
Siemens | IEC 3Ph 22kW Parent cable 7m | affected 0 - < V2.135 |
Siemens | IEC 3Ph 22kW Parent cable 7m incl. SIM | affected 0 - < V2.135 |
Siemens | IEC 3Ph 22kW Parent socket | affected 0 - < V2.135 |
Siemens | IEC 3Ph 22kW Parent socket incl. SIM | affected 0 - < V2.135 |
Siemens | IEC 3Ph 22kW Parent socket/ shutter | affected 0 - < V2.135 |
Siemens | IEC 3Ph 22kW Parent socket/ shutter SIM | affected 0 - < V2.135 |
Siemens | IEC ERK 3Ph 22 kW Child cable 7m | affected 0 - < V2.135 |
Siemens | IEC ERK 3Ph 22 kW Child cable 7m | affected 0 - < V2.135 |
Siemens | IEC ERK 3Ph 22 kW Child cable 7m | affected 0 - < V2.135 |
Siemens | IEC ERK 3Ph 22 kW Child socket | affected 0 - < V2.135 |
Siemens | IEC ERK 3Ph 22 kW Parent socket | affected 0 - < V2.135 |
Siemens | IEC ERK 3Ph 22 kW Parent socket incl. SI | affected 0 - < V2.135 |
Siemens | UL Commercial Cellular 48A NTEP | affected 0 - < V2.135 |
Siemens | UL Commercial Child 40A w/ 15118 HW | affected 0 - < V2.135 |
Siemens | UL Commercial Child 48A BA Compliant | affected 0 - < V2.135 |
Siemens | UL Commercial Child 48A w/ 15118 HW | affected 0 - < V2.135 |
Siemens | UL Commercial Parent 40A with Simcard | affected 0 - < V2.135 |
Siemens | UL Commercial Parent 48A (USPS) | affected 0 - < V2.135 |
Siemens | UL Commercial Parent 48A BA Compliant | affected 0 - < V2.135 |
Siemens | UL Commercial Parent 48A with Simcard BA | affected 0 - < V2.135 |
Siemens | UL Commercial Parent 48A, 15118, 25ft | affected 0 - < V2.135 |
Siemens | UL Commercial Parent 48A, 15118, 25ft | affected 0 - < V2.135 |
Siemens | UL Commercial Parent 48A, 15118, 25ft | affected 0 - < V2.135 |
Siemens | UL Commercial Parent 48A,15118 25ft Sim | affected 0 - < V2.135 |
Siemens | VersiCharge Blue™ 80A AC Cellular | affected 0 - < V2.135 |
Weaknesses (CWE)
CVSS v3.1 Details
CVSS v3.1 Vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now