CVE Vulnerabilities

CVE-2021-35954

Published: Dec 26, 2022 | Modified: Apr 14, 2025
CVSS 3.x
8.1
HIGH
Source:
NVD
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

fastrack Reflex 2.0 W307S_REFLEX_v90.89 Activity Tracker allows physically proximate attackers to dump the firmware, flash custom malicious firmware, and brick the device via the Serial Wire Debug (SWD) feature.

Affected Software

NameVendorStart VersionEnd Version
Reflex_2.0_firmwareFastrack90.89 (including)90.89 (including)

References