CVE Vulnerabilities

CVE-2021-35954

Published: Dec 26, 2022 | Modified: Apr 14, 2025
CVSS 3.x
8.1
HIGH
Source:
NVD
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

fastrack Reflex 2.0 W307S_REFLEX_v90.89 Activity Tracker allows physically proximate attackers to dump the firmware, flash custom malicious firmware, and brick the device via the Serial Wire Debug (SWD) feature.

Affected Software

Name Vendor Start Version End Version
Reflex_2.0_firmware Fastrack 90.89 (including) 90.89 (including)

References