GHSA-fvfc-m52v-j2p2CriticalCVSS 9.8

The firmware update process for the basemodule of the charging controller only validates the...

Published
July 30, 2026
Last Modified
July 30, 2026

🔗 CVE IDs covered (1)

📋 Description

The firmware update process for the basemodule of the charging controller only validates the CRC32 checksum without cryptographic signature verification. This allows an unauthenticated remote attacker to install a modified firmware, resulting in full system compromise.

🔗 References (3)