← Back to CVE search

CVE-2026-44104

Firmware

Description

The firmware update process for the basemodule of the charging controller only validates the CRC32 checksum without cryptographic signature verification. This allows an unauthenticated remote attacker to install a modified firmware, resulting in full system compromise.

CVSS 9.8EPSS 0.241%Risk 1
View source
Published
2026-07-30 07:16:58
Affected versions
unknown
Type
Firmware
Last modified
2026-07-30 15:16:33
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H