Vulnerabilities > Echarge

DATE CVE VULNERABILITY TITLE RISK
2024-11-24 CVE-2024-11666 Insufficient Verification of Data Authenticity vulnerability in Echarge Salia Plcc Firmware
Affected devices beacon to eCharge cloud infrastructure asking if there are any command they should run.
network
low complexity
echarge CWE-345
critical
9.8
2024-11-24 CVE-2024-11665 Command Injection vulnerability in Echarge Salia Plcc Firmware
Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in hardy-barth cph2_echarge_firmware allows OS Command Injection.This issue affects cph2_echarge_firmware: through 2.0.4.
low complexity
echarge CWE-77
8.8