๐Ÿ” CVE Alert

CVE-2026-14952

HIGH 7.5

Frauscher Sensortechnik: FDS102 for FAdC/FAdCi R2 is offering files with sensitive information for download without requiring authentication

CVSS Score
7.5
EPSS Score
0.0%
EPSS Percentile
0th

An unauthenticated remote attacker can retrieve sensible files from the FDS Web server, such as the backup archive at /FdsBackup.zip and additional files under /downloads/*, directly over HTTP without a valid session. These files disclose detailed railway signaling and track layout information that should not be available to unauthenticated users.

CWE CWE-306
Vendor frauscher sensortechnik
Product fds 102
Published Aug 20, 2026
Stay Ahead of the Next One

Get instant alerts for frauscher sensortechnik fds 102

Be the first to know when new high vulnerabilities affecting frauscher sensortechnik fds 102 are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
None
Availability
None

Affected Versions

Frauscher Sensortechnik / FDS 102
2.1.0 โ‰ค 2.13.3

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
certvde.com: https://www.certvde.com/en/advisories/VDE-2026-078/