Phoenix Contact CHARX SEC-3000
cpe:2.3:h:phoenixcontact:charx_sec-3000:*:*:*:*:*:*:*, +1 more
- < 1.9.0
A vulnerability exists in the firmware of Phoenix Contact CHARX SEC-3xxx charging controllers, allowing unauthenticated adjacent attackers to download log files from the controller. This could lead to the disclosure of restricted information. The vulnerability affects CHARX SEC-3000, SEC-3050, SEC-3100, and SEC-3150 models, all running firmware prior to 1.9.0.
Exploitation of this vulnerability could result in the unauthorized disclosure of sensitive information from the affected charging controller's log files.
Users are advised to upgrade to firmware version 1.9.0, which addresses this vulnerability. For general security recommendations regarding network-enabled devices, refer to the Phoenix Contact Application Note Security.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.