GHSA-fvfc-m52v-j2p2CriticalCVSS 9.8
The firmware update process for the basemodule of the charging controller only validates the...
🔗 CVE IDs covered (1)
📋 Description
The firmware update process for the basemodule of the charging controller only validates the CRC32 checksum without cryptographic signature verification. This allows an unauthenticated remote attacker to install a modified firmware, resulting in full system compromise.