CVE-2025-5750 | WOLFBOX Level 2 EV Charger tuya_svc_devos_activate_result_parse secKey/localKey/stdTimeZone/devId heap-based overflow (ZDI-25-329 / EUVD-2025-17314)
A vulnerability classified as critical was found in WOLFBOX Level 2 EV Charger. This vulnerability affects the function tuya_svc_devos_activate_result_parse. The manipulation of the argument secKey/localKey/stdTimeZone/devId leads to heap-based buffer overflow.
This vulnerability was named CVE-2025-5750. The attack can only be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.