CVE-2022-44039

CVSS V2 None CVSS V3 None
Description
Franklin Fueling System FFS Colibri 1.9.22.8925 is affected by: File system overwrite. The impact is: File system rewrite (remote). ¶¶ An attacker can overwrite system files like [system.conf] and [passwd], this occurs because the insecure usage of "fopen" system function with the mode "wb" which allows overwriting file if exists. Overwriting files such as passwd, allows an attacker to escalate his privileges by planting backdoor user with root privilege or change root password.
Overview
  • CVE ID
  • CVE-2022-44039
  • Assigner
  • cve@mitre.org
  • Vulnerability Status
  • Analyzed
  • Published Version
  • 2022-12-05T21:15:10.280
  • Last Modified Date
  • 2022-12-07T04:50:27.127
CPE Configuration (Product)
CPE Vulnerable Operator Version Start Version End
cpe:2.3:o:franklinfueling:colibri_firmware:1.9.22.8925:*:*:*:*:*:*:* 1 OR
References
Reference URL Reference Tags
https://pastebin.com/raw/64stbsWu Exploit Third Party Advisory
History
Created Old Value New Value Data Type Notes
2022-12-07 18:06:36 Added to TrackCVE