top of page
perceptive_background_267k.jpg

The CHARX JupiCore service allows an unauthenticated remote attacker to reconfigure charging points. This can lead to disclosure of charging point UIDs, Denial-…

Published:

29 juli 2026 om 22:00:00

Alert date:

30 juli 2026 om 15:06:27

Source:

nvd.nist.gov

Click to open the original link from this advisory

Critical Infrastructure, Mobile & IoT, Network Infrastructure

CVE-2026-44100 affects the CHARX JupiCore service, a component used in electric vehicle charging infrastructure. An unauthenticated remote attacker can exploit this vulnerability to reconfigure charging points without any authentication. The exploitation can result in multiple impacts including disclosure of charging point UIDs, Denial-of-Service conditions, and tampering with files. The vulnerability is particularly concerning as it targets EV charging infrastructure, which is considered critical infrastructure. No authentication is required to exploit this flaw, making it accessible to a wide range of threat actors. The issue has been documented by CERT VDE under advisory VDE-2026-008.

Technical details

Mitigation steps:

Affected products:

CHARX JupiCore

Related links:

Related CVE's:

Related threat actors:

IOC's:

This article was created with the assistance of AI technology by Perceptive.

© 2025 by Perceptive Security. All rights reserved.

email: info@perceptivesecurity.com

Deze website toont informatie afkomstig van externe bronnen; Perceptive aanvaardt geen verantwoordelijkheid voor de juistheid, volledigheid of actualiteit van deze informatie.

bottom of page