An unauthenticated remote attacker can perform a command injection in the OCPP Service with limited privileges due to improper input validation.
2024-03-12T09:15:08.020
2025-01-24T07:15:09.093
Modified
CVSSv3.1: 7.3 (HIGH)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | phoenixcontact | charx_sec-3000_firmware | < 1.5.1 | Yes |
Hardware | phoenixcontact | charx_sec-3000 | - | No |
Operating System | phoenixcontact | charx_sec-3050_firmware | < 1.5.1 | Yes |
Hardware | phoenixcontact | charx_sec-3050 | - | No |
Operating System | phoenixcontact | charx_sec-3100_firmware | < 1.5.1 | Yes |
Hardware | phoenixcontact | charx_sec-3100 | - | No |
Operating System | phoenixcontact | charx_sec-3150_firmware | < 1.5.1 | Yes |
Hardware | phoenixcontact | charx_sec-3150 | - | No |