CVE Vulnerabilities

CVE-2021-35954

Published: Dec 26, 2022 | Modified: Jan 11, 2023
CVSS 3.x
8.1
HIGH
Source:
NVD
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

fastrack Reflex 2.0 W307S_REFLEX_v90.89 Activity Tracker allows physically proximate attackers to dump the firmware, flash custom malicious firmware, and brick the device via the Serial Wire Debug (SWD) feature.

Affected Software

Name Vendor Start Version End Version
Reflex_2.0_firmware Fastrack 90.89 (including) 90.89 (including)

References