27 Total CVEs
27 AI Analyzed
0 CISA KEV
7 Critical

Profile

0% ended up actively exploited 0 of 27 added to CISA KEV
26% rated critical (CVSS 9.0+) 7 critical, 20 high
0 with a public exploit on record positive-only index; absence is not proof

Last 12 months

16 CVEs in the last 12 months

Products

  • CHARX SEC-3150, SEC-3100, SEC-3050, SEC-30004
  • CHARX SEC-31503
  • CHARX SEC-3000, 3050, 3100, 31501
  • OS with1
  • AXC F 11521
  • PLCnext1

6 products in total

Every figure counts the high and critical CVEs CVE Brief has published for this vendor, not every CVE the vendor has ever received. Exploitation means listing in the CISA Known Exploited Vulnerabilities catalog. No patch-availability figure is shown because CVE Brief does not measure it.

All Vendors
Showing 1-27 of 27 CVEs
CVE-2026-7849
Analyzed
9.8
Phoenix Contact CHARX SEC-3150, SEC-3100, SEC-3050, SEC-3000

An improper command neutralization vulnerability allows an unauthenticated remote attacker to execute arbitrary commands as root on the system.

2026-07-30
CVE-2026-44108
Analyzed
9.8
Phoenix Contact CHARX SEC-3150, SEC-3100, SEC-3050, SEC-3000

A script execution order flaw during system shutdown causes the firewall to terminate prematurely, exposing internal services to unauthenticated remot...

2026-07-30
CVE-2026-44104
Analyzed
9.8
Phoenix Contact CHARX SEC-3150, SEC-3100, SEC-3050, SEC-3000

The firmware update process for Phoenix Contact charging controllers lacks cryptographic signature verification, allowing unauthenticated remote attac...

2026-07-30
CVE-2026-44101
Analyzed
9.8
Phoenix Contact CHARX SEC-3150

The CHARX OCPP Agent service on Phoenix Contact devices lacks authentication, allowing remote attackers to reconfigure backend connections and cause d...

2026-07-30
CVE-2026-44100
Analyzed
9.4
Phoenix Contact CHARX SEC-3150

The CHARX JupiCore service in various Phoenix Contact CHARX SEC controllers contains a missing authentication vulnerability, allowing unauthenticated...

2026-07-30
CVE-2026-44098
Analyzed
8.6
Phoenix Contact CHARX SEC-3000, 3050, 3100, 3150

This vulnerability allows an unauthenticated remote attacker with control over the OCPP backend via firewall-bypass to perform an OS command injection...

2026-07-30
CVE-2026-44094
Analyzed
8.6
Phoenix Contact CHARX SEC-3150, SEC-3100, SEC-3050, SEC-3000

An unauthenticated remote attacker can enforce the system to fall back to a firmware partition with an insecure configuration including default creden...

2026-07-30
CVE-2026-44090
Analyzed
9.8
Phoenix Contact CHARX SEC-3150

A missing authentication vulnerability in the Phoenix Contact CHARX SEC series allows unauthenticated remote attackers to access and potentially compr...

2026-07-30
CVE-2026-22323
Analyzed
7.1
Phoenix Contact Multiple Products

A CSRF vulnerability in the Link Aggregation configuration interface allows an unauthenticated remote attacker to trick authenticated users into sendi...

2026-03-19
CVE-2026-22322
Analyzed
7.1
Phoenix Contact Multiple Products

A stored cross‑site scripting (XSS) vulnerability in the Link Aggregation configuration interface allows an unauthenticated remote attacker to create...

2026-03-19
CVE-2026-22317
Analyzed
7.2
Phoenix Contact OS with

A command injection vulnerability in the device’s Root CA certificate transfer workflow allows a high-privileged attacker to send crafted HTTP POST re...

2026-03-19
CVE-2025-41769
Analyzed
9.8
Phoenix Contact AXC F 1152

A buffer overflow vulnerability in the PROFINET service of Phoenix Contact controllers allows unauthenticated remote attackers to cause a device reboo...

2026-08-12
CVE-2025-41717
Analyzed
8.8
Phoenix Contact Multiple Products

An unauthenticated remote attacker can trick a high privileged user into uploading a malicious payload via the config-upload endpoint, leading to code...

2026-01-13
CVE-2025-41699
Analyzed
8.8
Phoenix Contact Multiple Products

An low privileged remote attacker with an account for the Web-based management can change the system configuration to perform a command injection as r...

2025-10-14
CVE-2025-41686
Analyzed
7.8
Phoenix Contact Multiple Products

A low-privileged local attacker can exploit improper permissions on nssm

2025-08-12
CVE-2025-41669
Analyzed
8.8
Phoenix Contact PLCnext

The Web-based Management allows a remote low privileged Engineer user to install additional APPs on the device downloaded from the PLCnext Store witho...

2026-05-27
CVE-2025-41668
Analyzed
8.8
Phoenix Contact Multiple Products

A low privileged remote attacker with file access can replace a critical file or folder used by the service security-profile to get read, write and ex...

2025-07-08
CVE-2025-41667
Analyzed
8.8
Phoenix Contact Multiple Products

A low privileged remote attacker with file access can replace a critical file used by the arp-preinit script to get read, write and execute access to...

2025-07-08
CVE-2025-41666
Analyzed
8.8
Phoenix Contact Multiple Products

A low privileged remote attacker with file access can replace a critical file used by the watchdog to get read, write and execute access to any file o...

2025-07-08
CVE-2025-2813
Analyzed
7.5
Phoenix Contact Multiple Products

An unauthenticated remote attacker can cause a Denial of Service by sending a large number of requests to the http service on port 80

2025-07-31
CVE-2025-25271
Analyzed
8.8
Phoenix Contact Multiple Products

An unauthenticated adjacent attacker is able to configure a new OCPP backend, due to insecure defaults for the configuration interface

2025-07-10
CVE-2025-25269
Analyzed
8.4
Phoenix Contact Multiple Products

An unauthenticated local attacker can inject a command that is subsequently executed as root, leading to a privilege escalation

2025-07-10
CVE-2025-25268
Analyzed
8.8
Phoenix Contact Multiple Products

An unauthenticated adjacent attacker can modify configuration by sending specific requests to an API-endpoint resulting in read and write access due t...

2025-07-08
CVE-2025-24006
Analyzed
7.8
Phoenix Contact Multiple Products

A low privileged local attacker can leverage insecure permissions via SSH on the affected devices to escalate privileges to root

2025-07-10
CVE-2025-24005
Analyzed
7.8
Phoenix Contact Multiple Products

A local attacker with a local user account can leverage a vulnerable script via SSH to escalate privileges to root due to improper input validation

2025-07-10
CVE-2025-24003
Analyzed
8.2
Phoenix Contact Multiple Products

An unauthenticated remote attacker can use MQTT messages to trigger out-of-bounds writes in charging stations complying with German Calibration Law, r...

2025-07-08
CVE-2024-43384
Analyzed
8
Phoenix Contact Multiple Products

A low privileged remote attacker can gain the root password due to improper removal of sensitive information before storage or transfer

2026-05-08