Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Workaround
Monta states that they are actively working to increase adoption of authenticated connections across their network and to deprecate unauthenticated access on a rolling basis. Monta states that they provide support for OCPP 1.6 Security Profile 2 (HTTP Basic Auth with TLS) and encourage operators to enable it.
Tracking
Sign in to view the affected projects.
No advisories yet.
Fri, 02 Oct 2026 21:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Charging station authentication identifiers are publicly accessible via web-based mapping platforms. | |
| Title | Monta monta.app Insufficiently Protected Credentials | |
| Weaknesses | CWE-522 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2026-10-02T21:27:59.493Z
Reserved: 2026-09-24T16:22:04.115Z
Link: CVE-2026-93474
No data.
Status : Received
Published: 2026-10-02T22:16:55.873
Modified: 2026-10-02T22:16:55.873
Link: CVE-2026-93474
No data.
OpenCVE Enrichment
Updated: 2026-10-02T22:30:19Z