VYPR

Colibri Firmware

by Franklinfueling

CVEs (3)

  • CVE-2022-44039CriDec 5, 2022
    risk 0.64cvss 9.8epss 0.01

    Franklin Fueling System FFS Colibri 1.9.22.8925 is affected by: File system overwrite. The impact is: File system rewrite (remote). ¶¶ An attacker can overwrite system files like [system.conf] and [passwd], this occurs because the insecure usage of "fopen" system function with…

  • CVE-2021-46417HigApr 7, 2022
    risk 0.57cvss 7.5epss 0.60

    Insecure handling of a download function leads to disclosure of internal files due to path traversal with root privileges in Franklin Fueling Systems Colibri Controller Module 1.8.19.8580.

  • CVE-2023-5885MedNov 27, 2023
    risk 0.42cvss 6.5epss 0.01

    The discontinued FFS Colibri product allows a remote user to access files on the system including files containing login credentials for other users.