ZDI-CAN-29075: ZDI-26-511: (Pwn2Own) Phoenix Contact CHARX SEC-3150 user-applications Symlink Following Local Privilege Escalation Vulnerability
This vulnerability allows local attackers to escalate privileges on affected installations of Phoenix Contact CHARX SEC-3150 devices. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The ZDI has assigned a CVSS rating of 7.8. The following CVEs are assigned: CVE-2026-44093.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-CAN-29075?
ZDI-CAN-29075 has a risk score of 46, indicating a significant vulnerability.
How do I fix ZDI-CAN-29075?
To resolve ZDI-CAN-29075, ensure that all user applications are updated to the latest firmware provided by Phoenix Contact.
What devices are impacted by ZDI-CAN-29075?
ZDI-CAN-29075 specifically affects Phoenix Contact CHARX SEC-3150 devices.
Can attackers remotely exploit ZDI-CAN-29075?
No, attackers must first gain local access to execute low-privileged code to exploit ZDI-CAN-29075.
What type of vulnerability is ZDI-CAN-29075?
ZDI-CAN-29075 is a local privilege escalation vulnerability caused by symlink following.