Record summary

CVE-2025-27769 has a selected CVSS score of 2.4 (low).

Description

A vulnerability has been identified in Heliox Flex 180 kW EV Charging Station (All versions < F4.11.1), Heliox Mobile DC 40 kW EV Charging Station (All versions < L4.10.1). Affected devices contain improper access control that could allow an attacker to reach unauthorized services via the charging cable.

Description source: CVE List

Exploitation context

CISA SSVC decision

ExploitationNone
AutomatableNo
Technical impactPartial

CISA Coordinator · SSVC 2.0.3 · Evaluated Mar 10, 2026 · Source: CVE List

Affected products and versions

2
ProductSourceVersion rangeStatus

Heliox Flex 180 kW EV Charging Station

Browse Siemens / Heliox Flex 180 kW EV Charging Station

Default status: unknown

CVE ListBefore F4.11.1affected

Heliox Mobile DC 40 kW EV Charging Station

Browse Siemens / Heliox Mobile DC 40 kW EV Charging Station

Default status: unknown

CVE ListBefore L4.10.1affected

References

2