Phoenix Contact CHARX SEC-3000
cpe:2.3:h:phoenixcontact:charx_sec-3000:*:*:*:*:*:*:*, +1 more
- < 1.7.3
A vulnerability exists in Phoenix Contact CHARX SEC-3xxx charging controllers, all versions prior to 1.7.3. This vulnerability allows an unauthenticated local attacker to inject a command that is executed with root privileges, leading to unauthorized privilege escalation.
Exploitation of this vulnerability results in unauthorized privilege escalation, allowing an attacker to execute commands as the root user.
Users are advised to upgrade to firmware version 1.7.3, which addresses this vulnerability. For general security recommendations regarding network-enabled devices, consult the Phoenix Contact Application Note Security.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.