📦

charx_sec-3150

Vendor: phoenixcontact

Actively Exploited 0 CISA KEV List
PoC / Exploits 0 Code Available
Total RCEs 8 Remote Access
Total CVEs 38 Total Indexed
Avg. EPSS 0.58% Exploit Prob.
Latest CVE CVE-2025-25271 Jul 08

Security Vulnerability Index

Page 1 / 4
8.8 CVSS

An unauthenticated adjacent attacker is able to configure a new OCPP backend, due to insecure defaults for the configuration interface.

EPSS: 0.29%
9.8 CVSS

An unauthenticated remote attacker can alter the device configuration in a way to get remote code execution as root with specific configurations.

EPSS: 0.63%
8.4 CVSS

An unauthenticated local attacker can inject a command that is subsequently executed as root, leading to a privilege escalation.

EPSS: 0.24%
8.8 CVSS

An unauthenticated adjacent attacker can modify configuration by sending specific requests to an API-endpoint resulting in read and write access due to missing authentication.

EPSS: 0.30%
7.8 CVSS

A low privileged local attacker can leverage insecure permissions via SSH on the affected devices to escalate privileges to root.

EPSS: 0.11%
7.8 CVSS

A local attacker with a local user account can leverage a vulnerable script via SSH to escalate privileges to root due to improper input validation.

EPSS: 0.12%
5.2 CVSS

A physical attacker with access to the device display via USB-C can send a message to the device which triggers an unsecure copy to a buffer resulting in loss of integrity and a temporary denial-of-service for the stations until they got restarted by the watchdog.

EPSS: 0.16%
8.2 CVSS

An unauthenticated remote attacker can use MQTT messages to trigger out-of-bounds writes in charging stations complying with German Calibration Law, resulting in a loss of integrity for only EichrechtAgents and potential denial-of-service for these stations.

EPSS: 0.34%
5.3 CVSS

An unauthenticated remote attacker can use MQTT messages to crash a service on charging stations complying with German Calibration Law, resulting in a temporary denial-of-service for these stations until they got restarted by the watchdog.

EPSS: 0.36%
8.6 CVSS

A remote unauthenticated attacker can use the firmware update feature on the LAN interface of the device to reset the password for the predefined, low-privileged user “user-app” to the default password.

EPSS: 0.50%