CNNVD-202507-861 Information

CNNVD ID

CNNVD-202507-861

CVE-2025-24002

  • CNNVD Published: 2025-07-08

Description (Chinese)

PHOENIX CONTACT CHARX SEC是德国菲尼克斯电气(PHOENIX CONTACT)公司的一系列 AC 充电控制器。 Phoenix Contact CHARX SEC存在输入验证错误漏洞,该漏洞源于未经身份验证的远程攻击者可使用MQTT消息使符合德国校准法的充电站服务崩溃,导致临时拒绝服务。

Description (English)

PHOENIX CONTATT CHARX SEC is a series of AC charge controllers for PHOENIX CONTACT in Germany. Phoenix Contact CHARX SEC has an input verification error loophole, which arises from the use of MQTT messages by unidentified long-range assailants to bring down the charging station service in compliance with the German calibration system, resulting in the temporary denial of services.

Hazard Level

High

Vulnerability Type

输入验证错误

Affected Vendor

Phoenix Site

Published

2025-07-08

Last Modified

2026-02-24

References

https://nvd.nist.gov/vuln/detail/CVE-2025-24002

Patch

https://www.phoenixcontact.com/en-us/

Share on: