Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Workaround
Monta states that they are actively working to increase adoption of authenticated connections across their network and to deprecate unauthenticated access on a rolling basis. Monta states that they provide support for OCPP 1.6 Security Profile 2 (HTTP Basic Auth with TLS) and encourage operators to enable it.
Tracking
Sign in to view the affected projects.
No advisories yet.
Sun, 04 Oct 2026 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Monta
Monta monta.app |
|
| Vendors & Products |
Monta
Monta monta.app |
Sat, 03 Oct 2026 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 02 Oct 2026 21:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Charging station authentication identifiers are publicly accessible via web-based mapping platforms. | |
| Title | Monta monta.app Insufficiently Protected Credentials | |
| Weaknesses | CWE-522 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2026-10-03T15:52:54.945Z
Reserved: 2026-09-24T16:22:04.115Z
Link: CVE-2026-93474
Updated: 2026-10-03T15:51:51.444Z
Status : Awaiting Analysis
Published: 2026-10-02T22:16:55.873
Modified: 2026-10-06T15:15:48.310
Link: CVE-2026-93474
No data.
OpenCVE Enrichment
Updated: 2026-10-04T20:52:45Z