Privilege Escalation Vulnerability in udhcpc by the Vendor
CVE-2026-44096

8.5HIGH

Key Information:

Vendor
CVE Published:
30 July 2026

What is CVE-2026-44096?

A vulnerability exists in udhcpc that allows a local user, specifically the user 'charx-web', to escalate their privileges and execute arbitrary commands with root-level access. This flaw can lead to a complete system compromise, allowing malicious actors to manipulate the affected environment without proper authorization. It is crucial for administrators to apply necessary patches and implement security measures to mitigate potential risks stemming from this vulnerability.

Affected Version(s)

CHARX SEC-3000 1.0.0 < 1.9.1

CHARX SEC-3050 1.0.0 < 1.9.1

CHARX SEC-3100 1.0.0 < 1.9.1

References

CVSS V4

Score:
8.5
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

ZDI
.