An issue in the web socket handshake process of SteVe v3...
Moderate severity
Unreviewed
Published
Apr 15, 2025
to the GitHub Advisory Database
•
Updated Apr 16, 2025
Description
Published by the National Vulnerability Database
Apr 15, 2025
Published to the GitHub Advisory Database
Apr 15, 2025
Last updated
Apr 16, 2025
An issue in the web socket handshake process of SteVe v3.7.1 allows attackers to bypass authentication and execute arbitrary coammands via supplying crafted OCPP requests.
References