VYPR
Vendor

CHARX

Products
4
CVEs
4
Across products
4
Status
Private

Products

4

Recent CVEs

4
  • CVE-2024-28133HigMay 14, 2024
    risk 0.51cvss 7.8epss 0.00

    A local low privileged attacker can use an untrusted search path in a CHARX system utility to gain root privileges. 

  • CVE-2026-44107HigJul 30, 2026
    risk 0.00cvss 7.5epss 0.00

    A reboot of the charging controller can be triggered via Modbus TCP without authentication. Therefore, when the Modbus functionality is enabled by opening the port that CharxModbusServer is listening, an unauthenticated attacker can perform a Denial-of-Service attack.

  • CVE-2026-44101CriJul 30, 2026
    risk 0.00cvss 9.8epss 0.00

    Due to missing authentication the CHARX OCPP Agent service allows an unauthenticated remote attacker to reconfigure the backend connection. This can lead to Denial-of-Service and confidential data being disclosed to the attacker.

  • CVE-2026-44100CriJul 30, 2026
    risk 0.00cvss 9.4epss 0.00

    The CHARX JupiCore service allows an unauthenticated remote attacker to reconfigure charging points. This can lead to disclosure of charging point UIDs, Denial-of-Service and files tampering.