CVE-2024-26003: PHOENIX CONTACT: DoS of the control agent in CHARX Series
An unauthenticated remote attacker can DoS the control agent due to a out-of-bounds read which may prevent or disrupt the charging functionality.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-26003?
CVE-2024-26003 has been classified as a high severity vulnerability due to its potential to cause denial of service (DoS) by an unauthenticated remote attacker.
How do I fix CVE-2024-26003?
To fix CVE-2024-26003, it is recommended to upgrade the Phoenixcontact Charx firmware to version 1.5.1 or higher.
Which products are affected by CVE-2024-26003?
CVE-2024-26003 affects the Phoenixcontact Charx Sec-3000, Sec-3050, Sec-3100, and Sec-3150 firmware versions prior to 1.5.1.
What is the exploit method for CVE-2024-26003?
CVE-2024-26003 can be exploited through an out-of-bounds read vulnerability that allows remote attackers to disable the control agent.
How critical is the impact of CVE-2024-26003 on charging functionality?
CVE-2024-26003 can critically disrupt the charging functionality of devices relying on the affected Phoenixcontact Charx products.