CVE-2024-26288

Severity
8.7HIGH
EPSS
0.1%
top 76.49%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 12

Description

An unauthenticated remote attacker can influence the communication due to the lack of encryption of sensitive data via a MITM. Charging is not affected.

CVSS vector

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:NExploitability: 2.2 | Impact: 5.8

🔴Vulnerability Details

2
GHSA
GHSA-382f-7w2w-v6qr: An unauthenticated remote attacker can influence the communication due to the lack of encryption of sensitive data via a MITM2024-03-12
CVEList
PHOENIX CONTACT: Lack of SSL support in CHARX Series2024-03-12
CVE-2024-26288 (HIGH CVSS 8.7) | An unauthenticated remote attacker | cvebase.io