CVE-2026-41032: Phoenix Contact Charx Sec-3000
High severity, CVSS 7.5. EPSS: 0.4% chance of exploitation in the next 30 days.
It is possible for an unauthenticated adjacent attacker to download log files of the controller, which may disclose some restricted information.
Affected products
- Phoenix Contact Charx Sec-3000: from 1.0.0, before 1.9.0 (fixed in 1.9.0)
- Phoenix Contact Charx Sec-3050: from 1.0.0, before 1.9.0 (fixed in 1.9.0)
- Phoenix Contact Charx Sec-3100: from 1.0.0, before 1.9.0 (fixed in 1.9.0)
- Phoenix Contact Charx Sec-3150: from 1.0.0, before 1.9.0 (fixed in 1.9.0)
Published 2026-06-03. Last modified 2026-07-22.