Denial-of-Service Vulnerability in CharxModbusServer by Charx
CVE-2026-44107

8.7HIGH

Key Information:

Vendor
CVE Published:
30 July 2026

What is CVE-2026-44107?

The vulnerability allows an unauthenticated attacker to trigger a reboot of the CharxModbusServer's charging controller by exploiting the open Modbus TCP port. This situation can lead to a denial-of-service condition, disrupting normal operations and potentially affecting the functionality of associated devices. Organizations using CharxModbusServer should ensure that the Modbus feature is disabled if not needed and implement strong network controls to prevent unauthorized access.

Affected Version(s)

CHARX SEC-3000 1.0.0 < 1.9.1

CHARX SEC-3050 1.0.0 < 1.9.1

CHARX SEC-3100 1.0.0 < 1.9.1

References

CVSS V4

Score:
8.7
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

ZDI
.