CVE-2026-44104
Severity CVSS v4.0:
CRITICAL
Type:
Unavailable / Other
Publication date:
30/07/2026
Last modified:
30/07/2026
Description
The firmware update process for the basemodule of the charging controller only validates the<br />
CRC32 checksum without cryptographic signature verification. This allows an unauthenticated remote attacker to install a modified firmware, resulting in full system compromise.
Impact
Base Score 4.0
9.30
Severity 4.0
CRITICAL
Base Score 3.x
9.80
Severity 3.x
CRITICAL



