Bender CC612
cpe:2.3:h:bender:cc612:*:*:*:*:*:*:*, +1 more
A vulnerability exists in Bender Charge Controller products due to an insecure default configuration that allows HTTP to be used instead of HTTPS for the web interface. This flaw enables an unauthenticated attacker on the same network to intercept sensitive data during transmission. The issue affects all versions of the CC612, CC613, ICC13xx, ICC15xx, and ICC16xx product families.
The vulnerability allows for cleartext transmission of sensitive information, which could be intercepted by an attacker on the same network.
To address this vulnerability, users should enable HTTPS in the web interface settings.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.