Threats Tagged 'cve-2026-22540'
View all threats tagged with 'cve-2026-22540'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2026-22540'
Click on any threat for detailed analysis and mitigation recommendations
CVE-2026-22540 is a critical vulnerability in EFACEC QC60/90/120 electric vehicle chargers caused by uncontrolled resource consumption (CWE-400). An attacker can trigger a denial of service by flooding one of the charger's control boards with massive ARP requests, disrupting the board responsible for managing EV interfaces. This disruption prevents the charger from functioning properly. The vulnerability requires no authentication or user interaction and can be exploited remotely over the network. With a CVSS 4.0 score of 9.2, it poses a severe risk to availability. European organizations relying on EFACEC chargers, especially in countries with high EV adoption and EFACEC market presence, are at significant risk. Mitigation requires network-level filtering of ARP floods, segmentation of charger management interfaces, and close monitoring of network traffic to detect anomalies. Patch information is currently unavailable, so proactive network defenses are critical. Join the discussion | CVE Database V5 | 01/07/2026, 14:16:32 UTC Added: 01/07/2026, 14:27:28 UTC |
Showing 1 to 1 of 1 result