Horizon Alert
Summary of the vulnerability and why it matters
This critical vulnerability allows any unauthenticated attacker on the network to inject malicious commands into Autel Maxi Charger firmware, potentially leading to a complete system compromise. The issue lies in how the device handles specific URL inputs on a port typically used for management or communication. While the direct business impact requires confirming device deployment and network exposure, this type of vulnerability could theoretically allow unauthorized control or disruption of charging infrastructure.
- Unauthenticated network attackers can run commands.
- Critical vulnerability in EV charging station firmware.
- Confirm relevance and potential exposure of affected devices.
Attack Path
How an attacker could exploit the issue
An attacker can target the Autel Maxi Charger Single by sending specially crafted input to its `/test` endpoint. This endpoint is accessible over the network on TCP port 9002, and it does not require any authentication. By manipulating the `url` parameter, an attacker can inject operating system commands, potentially leading to a complete compromise of the device.
- Entry Condition: Attacker has network access to the device.
- Trigger Point: Sending a crafted request to the `/test` endpoint.
- Resulting Risk: Arbitrary OS command execution.
Live Threat
Current exploitation, exposure, and threat context
This vulnerability could allow an unauthenticated attacker to execute arbitrary operating system commands on the affected device when its web interface is accessible over the network.
- System commands could be executed.
- Via network access to the device.
- Device compromise and potential disruption.
Operational Fix
Recommended remediation, mitigation, and detection steps
The Autel Maxi Charger Single firmware vulnerability requires immediate attention from teams responsible for operational technology (OT) and device management. The first step is to identify all deployed Maxi Charger Single units, determine their network exposure and criticality, and pinpoint the accountable owner for each device to plan remediation.
- Own the vulnerability and remediation planning.
- Verify network exposure and device criticality.
- Coordinate vendor engagement for firmware updates.