← Späť na vyhľadávanie CVE

CVE-2026-9038

Charging Controller

Popis

A stack-based buffer overflow vulnerability in the charging controller’s signal-processing logic allows an attacker with physical access to the charging interface to supply message fields that exceed expected bounds. Because the input is not sufficiently validated, memory corruption may occur, which can lead to execution of unauthorized code with elevated privileges.

CVSS 8.6EPSS 0.22999999999999998%Riziko 0.88
Zobraziť zdroj
Zverejnené
2026-05-28 20:16:27
Dotknuté verzie
unknown
Typ
Firmvér
Vektor
CVSS:4.0/AV:P/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X