top of page
perceptive_background_267k.jpg

Mobiliti e-mobi.hu

Published:

3 March 2026 at 12:00:00

Alert date:

3 March 2026 at 18:03:35

Source:

cisa.gov

Click to open the original link from this advisory

Critical Infrastructure, Mobile & IoT

Four critical vulnerabilities affect Mobiliti e-mobi.hu charging stations worldwide, enabling unauthorized administrative control and denial-of-service attacks. CVE-2026-26051 allows station impersonation through unauthenticated WebSocket endpoints. CVE-2026-20882 enables brute-force and DoS attacks via unrestricted authentication attempts. CVE-2026-27764 permits session hijacking through predictable identifiers. CVE-2026-27777 exposes authentication identifiers publicly via mapping platforms. The vulnerabilities impact Energy and Transportation critical infrastructure sectors with CVSS scores ranging from 6.5 to 9.4. Mobiliti has not responded to CISA coordination efforts, leaving all versions affected without available patches.

Technical details

Mitigation steps:

Affected products:

Mobiliti e-mobi.hu

Related links:

Related CVE's:

Related threat actors:

IOC's:

This article was created with the assistance of AI technology by Perceptive.

© 2025 by Perceptive Security. All rights reserved.

email: info@perceptivesecurity.com

Disclaimer: Deze website toont informatie afkomstig van externe bronnen. Perceptive aanvaardt geen verantwoordelijkheid voor de inhoud, juistheid of volledigheid van deze informatie.

bottom of page