Key Vulnerability Information from the Screenshot Summary Summary: Successful exploitation of the vulnerabilities could allow attackers to gain unauthorized administrative control over vulnerable charging stations or disrupt charging services through denial-of-service attacks. Affected Versions: chargemap.com versions: all/ (CVE-2026-25851, CVE-2026-20792, CVE-2026-25711, CVE-2026-20791) Vulnerability Details CVSS Score: v3 9.4 Vendor: Chargemap Equipment: Chargemap chargemap.com Vulnerabilities: - Missing Authentication for Critical Function - Improper Restriction of Excessive Authentication Attempts - Insufficient Session Expiration - Insufficiently Protected Credentials Background Critical Infrastructure Sectors: Energy, Transportation Systems Deployment: Worldwide Company Location**: France Vulnerability IDs CVE-2026-25851 CVE-2026-20792 CVE-2026-25711 CVE-2026-20791 Acknowledgments Khaled Sarieddine and Mohammad Ali Sayed reported these vulnerabilities to CISA Recommendation Practices Minimize network exposure Use secure methods like VPNs Perform risk assessment Update to the most current version Legal Notice Subject to CISA's Notification and Privacy & Use policy No known public exploitation Related Advisories CloudCharge cloudcharge.se Copeland XWEB and XWEB Pro Pelco, Inc. Sarix Pro 3 Series IP Cameras Johnson Controls, Inc. Frick Controls Quantum HD