CVE-2026-44104 - ControllerAgent does not perform validation of firmware
CVE ID :CVE-2026-44104
Published : July 30, 2026, 7:16 a.m. | 3 hours, 35 minutes ago
Description :The firmware update process for the basemodule of the charging controller only validates the CRC32 checksum without cryptographic signature verification. This allows an unauthenticated remote attacker to install a modified firmware, resulting in full system compromise.
Severity: 9.8 | CRITICAL
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Published : July 30, 2026, 7:16 a.m. | 3 hours, 35 minutes ago
Description :The firmware update process for the basemodule of the charging controller only validates the CRC32 checksum without cryptographic signature verification. This allows an unauthenticated remote attacker to install a modified firmware, resulting in full system compromise.
Severity: 9.8 | CRITICAL
Visit the link for more details, such as CVSS details, affected products, timeline, and more...