CVE-2024-26004
HIGHDescription
An unauthenticated remote attacker can DoS a control agent due to access of a uninitialized pointer which may prevent or disrupt the charging functionality.
Is your site exposed to CVE-2024-26004?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| phoenixcontact | charx_sec-3000_firmware |
| phoenixcontact | charx_sec-3000 |
| phoenixcontact | charx_sec-3050_firmware |
| phoenixcontact | charx_sec-3050 |
| phoenixcontact | charx_sec-3100_firmware |
| phoenixcontact | charx_sec-3100 |
| phoenixcontact | charx_sec-3150_firmware |
| phoenixcontact | charx_sec-3150 |
References
Frequently Asked Questions
What is CVE-2024-26004? +
How severe is CVE-2024-26004? +
What products are affected by CVE-2024-26004? +
How do I check if I'm vulnerable to CVE-2024-26004? +
Related Vulnerabilities
Access of Uninitialized Pointer vulnerability in Apache Thrift c_glib bindings. This issue affects Apache Thrift: before 0.25.0. Users are recommended …
Access of Uninitialized Pointer vulnerability in TP-Link WR940N and WR941ND allows local unauthenticated attackers the ability to execute DoS attack …
RouterOS WebFig contains an unauthenticated file-read vulnerability in the /jsproxy path where a newly allocated session retains a stale uninitialized …
Invalid pointer in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox ESR 153.4, Thunderbird 157, Thunderbird 140.17, Thunderbird …
Invalid pointer in the DOM: Bindings (WebIDL) component. This vulnerability was fixed in Firefox 153, Firefox ESR 115.38, Firefox ESR …
In AzeoTech DAQFactory release 20.7 (Build 2555), an Access of Uninitialized Pointer vulnerability can be exploited by an attacker which …