SEPTEMBER 5, 2026
Live Feed
Back to database
Case File

CVE-2026-8983

CRITICAL · CVSS 9.8 EPSS 0.43%

Source: NVD + CISA KEV + EPSS · Published 2026-07-21 · Last synced 2026-08-20

CyberRota Analysis

AI-Generated

The Autel Maxi Charger Single firmware versions up to V1.03.51 contain a hard-coded authentication token that allows attackers to bypass authorization checks on multiple management endpoints, enabling unauthorized access to privileged functionalities. Organizations using this firmware should prioritize remediation to prevent potential exploitation, as the vulnerability could lead to unauthorized control over charging management systems. Immediate action is recommended for those managing charging infrastructure to mitigate risks associated with this security flaw.

CVE
CVE-2026-8983
Severity
CRITICAL
CVSS
9.8
EPSS
0.43%

Original NVD Description

Autel Maxi Charger Single firmware through V1.03.51 contains a hard-coded authentication token that bypasses authorization checks for multiple management endpoints. An attacker can supply the special token value to invoke privileged functionality without valid authentication.

Related CVEs

Other vulnerabilities affecting the same vendor(s)