Vulnerabilities > Phoenixcontact > Charx SEC 3150 Firmware > High

DATE CVE VULNERABILITY TITLE RISK
2024-03-12 CVE-2024-25999 Unspecified vulnerability in Phoenixcontact products
An unauthenticated local attacker can perform a privilege escalation due to improper input validation in the OCPP agent service. 
local
low complexity
phoenixcontact
7.8
2024-03-12 CVE-2024-26000 Out-of-bounds Read vulnerability in Phoenixcontact products
An unauthenticated remote attacker can read memory out of bounds due to improper input validation in the MQTT stack. The brute force attack is not always successful because of memory randomization.
network
low complexity
phoenixcontact CWE-125
7.5