Show filters
3 Total Results
Displaying 1-3 of 3
Sort by:
Attacker Value
Unknown

CVE-2023-5885

Disclosure Date: November 27, 2023 (last updated February 25, 2025)
The discontinued FFS Colibri product allows a remote user to access files on the system including files containing login credentials for other users.
Attacker Value
Unknown

CVE-2022-44039

Disclosure Date: December 05, 2022 (last updated February 24, 2025)
Franklin Fueling System FFS Colibri 1.9.22.8925 is affected by: File system overwrite. The impact is: File system rewrite (remote). ¶¶ An attacker can overwrite system files like [system.conf] and [passwd], this occurs because the insecure usage of "fopen" system function with the mode "wb" which allows overwriting file if exists. Overwriting files such as passwd, allows an attacker to escalate his privileges by planting backdoor user with root privilege or change root password.
Attacker Value
Unknown

CVE-2021-46417

Disclosure Date: April 07, 2022 (last updated February 23, 2025)
Insecure handling of a download function leads to disclosure of internal files due to path traversal with root privileges in Franklin Fueling Systems Colibri Controller Module 1.8.19.8580.