Vulnerability Description
Insecure handling of a download function leads to disclosure of internal files due to path traversal with root privileges in Franklin Fueling Systems Colibri Controller Module 1.8.19.8580.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Franklinfueling | Colibri Firmware | 1.8.19.8580 |
| Franklinfueling | Colibri | - |
Related Weaknesses (CWE)
References
- http://packetstormsecurity.com/files/166610/FFS-Colibri-Controller-Module-1.8.19ExploitThird Party AdvisoryVDB Entry
- http://packetstormsecurity.com/files/166671/Franklin-Fueling-Systems-Colibri-ConExploitThird Party AdvisoryVDB Entry
- https://drive.google.com/drive/folders/1Yu4aVDdrgvs-F9jP3R8Cw7qo_TC7VB-RExploitThird Party Advisory
- http://packetstormsecurity.com/files/166610/FFS-Colibri-Controller-Module-1.8.19ExploitThird Party AdvisoryVDB Entry
- http://packetstormsecurity.com/files/166671/Franklin-Fueling-Systems-Colibri-ConExploitThird Party AdvisoryVDB Entry
- https://drive.google.com/drive/folders/1Yu4aVDdrgvs-F9jP3R8Cw7qo_TC7VB-RExploitThird Party Advisory
FAQ
What is CVE-2021-46417?
CVE-2021-46417 is a vulnerability with a CVSS score of 7.5 (HIGH). Insecure handling of a download function leads to disclosure of internal files due to path traversal with root privileges in Franklin Fueling Systems Colibri Controller Module 1.8.19.8580.
How severe is CVE-2021-46417?
CVE-2021-46417 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2021-46417?
Check the references section above for vendor advisories and patch information. Affected products include: Franklinfueling Colibri Firmware, Franklinfueling Colibri.