CVE-2026-22540
BaseFortify
Publication date: 2026-01-07
Last updated on: 2026-01-08
Assigner: S21sec
Description
Description
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| thales | cyber_solutions | * |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-400 | The product does not properly control the allocation and maintenance of a limited resource. |
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?
This vulnerability involves the massive sending of ARP requests which causes a denial of service on a specific board of the charger responsible for controlling the EV interfaces. Because this board must operate correctly for the charger to function properly, the denial of service disrupts the charger's operation.
How can this vulnerability impact me? :
The impact of this vulnerability is a denial of service on the charger, which can prevent the charger from functioning correctly. This means that electric vehicle charging could be disrupted or stopped entirely, potentially causing inconvenience or operational issues where EV charging is critical.