Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-8989

Опубликовано: 21 июл. 2026
Источник: nvd
CVSS3: 6.8
EPSS Низкий

Описание

Autel Maxi Charger Single firmware through V1.03.51 permits unrestricted access to the NXP i.MX6 recovery mode through exposed hardware recovery pins. An attacker with physical access can boot attacker-controlled code in memory and modify or extract firmware and other sensitive data.

Уязвимые конфигурации

Конфигурация 1

Одновременно

Одно из

cpe:2.3:o:autel:maxicharger_single_charger_firmware:*:*:*:*:*:*:*:american_standard
Версия до 1.03.51 (включая)
cpe:2.3:o:autel:maxicharger_single_charger_firmware:*:*:*:*:*:*:*:european_standard
Версия до 1.03.51 (включая)
cpe:2.3:h:autel:maxicharger_single_charger:-:*:*:*:*:*:*:*

EPSS

Процентиль: 20%
0.00276
Низкий

6.8 Medium

CVSS3

Дефекты

CWE-1191

Связанные уязвимости

CVSS3: 6.8
github
около 2 месяцев назад

Autel Maxi Charger Single firmware through V1.03.51 permits unrestricted access to the NXP i.MX6 recovery mode through exposed hardware recovery pins. An attacker with physical access can boot attacker-controlled code in memory and modify or extract firmware and other sensitive data.

EPSS

Процентиль: 20%
0.00276
Низкий

6.8 Medium

CVSS3

Дефекты

CWE-1191