Vulnerability Description
Franklin Fueling System FFS Colibri 1.9.22.8925 is affected by: File system overwrite. The impact is: File system rewrite (remote). ¶¶ An attacker can overwrite system files like [system.conf] and [passwd], this occurs because the insecure usage of "fopen" system function with the mode "wb" which allows overwriting file if exists. Overwriting files such as passwd, allows an attacker to escalate his privileges by planting backdoor user with root privilege or change root password.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Franklinfueling | Colibri Firmware | 1.9.22.8925 |
Related Weaknesses (CWE)
References
- https://pastebin.com/raw/64stbsWuExploitThird Party Advisory
- https://pastebin.com/raw/64stbsWuExploitThird Party Advisory
FAQ
What is CVE-2022-44039?
CVE-2022-44039 is a vulnerability with a CVSS score of 9.8 (CRITICAL). Franklin Fueling System FFS Colibri 1.9.22.8925 is affected by: File system overwrite. The impact is: File system rewrite (remote). ¶¶ An attacker can overwrite system files like [system.conf] and [pa...
How severe is CVE-2022-44039?
CVE-2022-44039 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2022-44039?
Check the references section above for vendor advisories and patch information. Affected products include: Franklinfueling Colibri Firmware.