Retour à la veille

CVE-2026-44104

Publié : 30 juillet 2026
Modifié : 30 juillet 2026
Lien officiel NVD
Score CVSS
9.8
CRITICAL

Description détaillée

The firmware update process for the basemodule of the charging controller only validates the CRC32 checksum without cryptographic signature verification. This allows an unauthenticated remote attacker to install a modified firmware, resulting in full system compromise.

Vecteur d'attaque (CVSS)

Vecteur brut :CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Références et Patchs