Show filters
6 Total Results
Displaying 1-6 of 6
Sort by:
Attacker Value
Unknown
CVE-2023-5500
Disclosure Date: December 11, 2023 (last updated December 14, 2023)
This vulnerability allows an remote attacker with low privileges to misuse Improper Control of Generation of Code ('Code Injection') to gain full control of the affected device.
0
Attacker Value
Unknown
CVE-2023-4292
Disclosure Date: September 21, 2023 (last updated October 08, 2023)
Frauscher Sensortechnik GmbH FDS101 for FAdC/FAdCi v1.4.24 and all previous versions are vulnerable to a SQL injection vulnerability via manipulated parameters of the web interface without authentication. The database contains limited, non-critical log information.
0
Attacker Value
Unknown
CVE-2023-4291
Disclosure Date: September 21, 2023 (last updated October 08, 2023)
Frauscher Sensortechnik GmbH FDS101 for FAdC/FAdCi v1.4.24 and all previous versions are vulnerable to a remote code execution (RCE) vulnerability via manipulated parameters of the web interface without authentication. This could lead to a full compromise of the FDS101 device.
0
Attacker Value
Unknown
CVE-2023-4152
Disclosure Date: September 21, 2023 (last updated October 08, 2023)
Frauscher Sensortechnik GmbH FDS101 for FAdC/FAdCi v1.4.24 and all previous versions are vulnerable to a path traversal vulnerability of the web interface by a crafted URL without authentication. This enables an remote attacker to read all files on the filesystem of the FDS101 device.
0
Attacker Value
Unknown
CVE-2023-2880
Disclosure Date: July 05, 2023 (last updated October 08, 2023)
Frauscher Sensortechnik GmbH FDS001 for FAdC/FAdCi v1.3.3 and all previous versions are vulnerable to a path traversal vulnerability of the web interface by a crafted URL without authentication. This enables an remote attacker to read all files on the filesystem of the FDS001 device.
0
Attacker Value
Unknown
CVE-2022-3575
Disclosure Date: November 01, 2022 (last updated December 22, 2024)
Frauscher Sensortechnik GmbH FDS102 for FAdC R2 and FAdCi R2 v2.8.0 to v2.9.1 are vulnerable to malicious code upload without authentication by using the configuration upload function. This could lead to a complete compromise of the FDS102 device.
0