Frauscher FDS101
cpe:2.3:a:frauscher:frauscher_diagnostic_system_101:*:*:*:*:*:*:*
- <= v1.4.25
- >= v2.8.0, < v2.13.3
- < v2.13.3
- <= v.2.3.9
A command injection vulnerability has been identified in Frauscher Sensortechnik products FDS101, FDS-SNMP101, and FDS102 (for FAdC/FAdCi R2 and all previous versions). This vulnerability allows a physical attacker with no privileges to gain full control of the affected device by exploiting improper handling of special elements used in OS command execution. The issue arises when a malicious configuration file is loaded from a USB drive.
Exploitation of this vulnerability allows for full control over the affected FDS101, FDS-SNMP101, or FDS102 device.
Users are advised to update FDS102 to version 2.13.3. For FDS101 and FDS-SNMP101, ensure that only authorized personnel have access to the system.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.