Notification Center
We at Frauscher stand for safety in rail transport and individual solutions for our customers. That is why we have introduced a process for security-relevant topics, which helps us to react as quickly as possible to alleged security risks. We work according to a comprehensive approach to secure our products, services and individual solutions.
For this purpose, we have established our Product Security Incident Response Team (PSIRT). You can reach our experts via the contact options listed at the bottom of the page.
Reporting
When you report a potential security risk to our experts, you will receive a confirmation from our Product Security Incident Response Team after a careful review.
Expert analysis
The potential risk will be analysed closely by our experts. If desired, you will receive regular status reports on the progress of the analysis.
Implementation
In this step, any necessary immediate measures are implemented, and long-term measures are planned.
Publication
The publication of the results and measures will be available on this page.
Publication Date: 20.08.2026
CVE-ID: CVE-2026-14946
CVSS v4.0 Base Score: 8.6
CVSS v4.0 Vector: CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
CVSS v3.1 Base Score: 7.2
CVSS v3.1 Vector: AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
CWE-ID: CWE-434 (Unrestricted Upload of File with Dangerous Type)
Summary
Frauscher Sensortechnik FDS102 for FAdC®/FAdC®i R2 is vulnerable to Unrestricted Upload of File with Dangerous Type. A high-privileged remote attacker can upload a .php file via the web UI and then request it directly from /uploads/<filename>.php to achieve arbitrary code execution. This is caused by improper file-type validation and could result in full system compromise.
Affected versions
FDS102 >=v2.8.0<=v2.13.3
Mitigation
Security-related application conditions SecRAC
The railway operator must ensure that only authorised personnel or people in the company of authorised personnel have access to the Frauscher Diagnostic System FDS102.
The recommendation is to connect the Frauscher Diagnostic System FDS102 to a network of category 2. If the Frauscher Diagnostic System FDS102 is connected to a network of category 3 (according to EN 50159:2010), then additional protective measures must be added.
Remediation
Update to FDS102 v2.14.0 or higher
Publication Date: 20.08.2026
CVE-ID: CVE-2026-14947
CVSS v4.0 Base Score: 8.6
CVSS v4.0 Vector: CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
CVSS v3.1 Base Score: 7.2
CVSS v3.1 Vector: AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
CWE-ID: CWE-24 (Path Traversal: '../filedir')
Summary
Frauscher Sensortechnik FDS102 for FAdC®/FAdC®i R2 is vulnerable to Path Traversal via a malicious ZIP file. A high-privileged remote attacker can upload a ZIP archive containing directory-traversal sequences (such as ../) to escape the intended extraction directory and write files to arbitrary locations on the server. This is caused by improper validation of archive entry paths before files are written to disk and can lead to arbitrary code execution and full system compromise.
Affected versions
FDS102 >=v2.8.0<=v2.13.3
Mitigation
Security-related application conditions SecRAC
The railway operator must ensure that only authorised personnel or people in the company of authorised personnel have access to the Frauscher Diagnostic System FDS102.
The recommendation is to connect the Frauscher Diagnostic System FDS102 to a network of category 2. If the Frauscher Diagnostic System FDS102 is connected to a network of category 3 (according to EN 50159:2010), then additional protective measures must be added.
Remediation
Update to FDS102 v2.14.0 or higher
Publication Date: 20.08.2026
CVE-ID: CVE-2026-14948
CVSS v4.0 Base Score: 8.7
CVSS v4.0 Vector: CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
CVSS v3.1 Base Score: 8.8
CVSS v3.1 Vector: AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CWE-ID: CWE-532 (Insertion of Sensitive Information into Log File)
Summary
Frauscher Sensortechnik FDS102 for FAdC/FAdCi R2 is vulnerable to Insertion of Sensitive Information into a Log File. A low-privileged remote attacker can extract live plaintext session identifiers for authenticated users from downloadable error-log archives and use them to hijack an active administrative session without needing to know the administrator password.
Affected versions
FDS102 >=v2.13.0<=v2.13.3
Mitigation
Security-related application conditions SecRAC
The railway operator must ensure that only authorised personnel or people in the company of authorised personnel have access to the Frauscher Diagnostic System FDS102.
The recommendation is to connect the Frauscher Diagnostic System FDS102 to a network of category 2. If the Frauscher Diagnostic System FDS102 is connected to a network of category 3 (according to EN 50159:2010), then additional protective measures must be added.
Remediation
Update to FDS102 v2.14.0 or higher
Publication Date: 20.08.2026
CVE-ID: CVE-2026-14949
CVSS v4.0 Base Score: 8.5
CVSS v4.0 Vector: CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:H/VA:N/SC:H/SI:H/SA:H
CVSS v3.1 Base Score: 6.5
CVSS v3.1 Vector: AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
CWE-ID: CWE-863 (Incorrect Authorization)
Summary
Frauscher Sensortechnik FDS102 for FAdC®/FAdC®i R2 is vulnerable to Incorrect Authorization due to improper enforcement of role-based access control. A low-privileged remote attacker with a valid session can submit a request to the user-creation function exposed at /api/user/add.php to create new accounts with arbitrary role values, including the highest privilege level used by the application.
Affected versions
FDS102 >=v2.11.0<=v2.13.3
Mitigation
Security-related application conditions SecRAC
The railway operator must ensure that only authorised personnel or people in the company of authorised personnel have access to the Frauscher Diagnostic System FDS102.
The recommendation is to connect the Frauscher Diagnostic System FDS102 to a network of category 2. If the Frauscher Diagnostic System FDS102 is connected to a network of category 3 (according to EN 50159:2010), then additional protective measures must be added.
Remediation
Update to FDS102 v2.14.0 or higher
Publication Date: 20.08.2026
CVE-ID: CVE-2026-14950
CVSS v4.0 Base Score: 9.3
CVSS v4.0 Vector: CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
CVSS v3.1 Base Score: 9.8
CVSS v3.1 Vector: AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CWE-ID: CWE-613 (Insufficient Session Expiration)
Summary
Frauscher Sensortechnik FDS102 for FAdC®/FAdC®i R2 is vulnerable to Insufficient Session Expiration due to flawed session-expiration logic. An unauthenticated remote attacker in possession of a valid session identifier can continue using the session after it should have expired. This increases the risk associated with stolen, leaked, shared, or unattended sessions and may enable unauthorized continued access to the FDS web interface.
Affected versions
FDS102 >=v2.1.0<=v2.13.3
Mitigation
Security-related application conditions SecRAC
The railway operator must ensure that only authorised personnel or people in the company of authorised personnel have access to the Frauscher Diagnostic System FDS102.
The recommendation is to connect the Frauscher Diagnostic System FDS102 to a network of category 2. If the Frauscher Diagnostic System FDS102 is connected to a network of category 3 (according to EN 50159:2010), then additional protective measures must be added.
Remediation
Update to FDS102 v2.14.0 or higher
Publication Date: 20.08.2026
CVE-ID: CVE-2026-14951
CVSS v4.0 Base Score: 8.6
CVSS v4.0 Vector: CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:P/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
CVSS v3.1 Base Score: 8
CVSS v3.1 Vector: AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
CWE-ID: CWE-352 (Cross-Site Request Forgery (CSRF))
Summary
Frauscher Sensortechnik FDS102 for FAdC®/FAdC®i R2 is vulnerable to Cross-Site Request Forgery (CSRF) due to missing CSRF protection headers. A low-privileged remote attacker can use malicious web pages to cause authenticated users to perform unintended actions in the FDS web interface.
Affected versions
FDS102 >=v2.0.0<=v2.13.3
Mitigation
Security-related application conditions SecRAC
The railway operator must ensure that only authorised personnel or people in the company of authorised personnel have access to the Frauscher Diagnostic System FDS102.
The recommendation is to connect the Frauscher Diagnostic System FDS102 to a network of category 2. If the Frauscher Diagnostic System FDS102 is connected to a network of category 3 (according to EN 50159:2010), then additional protective measures must be added.
Remediation
Update to FDS102 v2.14.0 or higher
Publication Date: 20.08.2026
CVE-ID: CVE-2026-14952
CVSS v4.0 Base Score: 8.7
CVSS v4.0 Vector: CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N
CVSS v3.1 Base Score: 7.5
CVSS v3.1 Vector: AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CWE-ID: CWE-306 (Missing Authentication for Critical Function)
Summary
Frauscher Sensortechnik FDS102 for FAdC®/FAdC®i R2 offers files containing sensitive information for download without requiring authentication. An unauthenticated remote attacker can retrieve sensitive files from the FDS web server — such as the backup archive at /FdsBackup.zip and additional files under /downloads/* — directly over HTTP without a valid session. These files disclose detailed railway signalling and track-layout information that should not be available to unauthenticated users.
Affected versions
FDS102 >=v2.1.0<=v2.13.3
Mitigation
Security-related application conditions SecRAC
The railway operator must ensure that only authorised personnel or people in the company of authorised personnel have access to the Frauscher Diagnostic System FDS102.
The recommendation is to connect the Frauscher Diagnostic System FDS102 to a network of category 2. If the Frauscher Diagnostic System FDS102 is connected to a network of category 3 (according to EN 50159:2010), then additional protective measures must be added.
Remediation
Update to FDS102 v2.14.0 or higher
Publication Date: 20.08.2026
CVE-ID: CVE-2026-14953
CVSS v4.0 Base Score: 5.3
CVSS v4.0 Vector: CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N
CVSS v3.1 Base Score: 4.3
CVSS v3.1 Vector: AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
CWE-ID: CWE-425 (Direct Request ('Forced Browsing'))
Summary
Frauscher Sensortechnik FDS102 for FAdC®/FAdC®i R2 is missing authorization (forced browsing) due to improper enforcement of role-based access control. A low-privileged remote attacker can enumerate all configured users and identify which accounts hold elevated privileges using the endpoint /api/user/fetch-all.php.
Affected versions
FDS102 >=v2.11.0<=v2.13.3
Mitigation
Security-related application conditions SecRAC
The railway operator must ensure that only authorised personnel or people in the company of authorised personnel have access to the Frauscher Diagnostic System FDS102.
The recommendation is to connect the Frauscher Diagnostic System FDS102 to a network of category 2. If the Frauscher Diagnostic System FDS102 is connected to a network of category 3 (according to EN 50159:2010), then additional protective measures must be added.
Remediation
Update to FDS102 v2.14.0 or higher
Publication Date: 07.07.2025
CVE-ID: CVE-2025-3626
CVSS v3.1 Base Score: 9.1
CVSS Vector:
AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
CWE-ID: CWE-78
Summary
Frauscher Sensortechnik FDS102 for FAdC/FAdCi R2 and all previous versions are vulnerable to OS Command Injection via malicious configuration file. A remote attacker with high privileges can gain full control of the device due to improper neutralization of special elements used in an OS Command ('OS Command Injection') while uploading a config file via webUI.
Affected versions
FDS102 >=v2.8.0<v2.13.3
Mitigation
Security-related application conditions SecRAC
The railway operator must ensure that only authorised personnel or people in the company of authorised personnel have access to the Frauscher Diagnostic System FDS102.
The recommendation is to connect the Frauscher Diagnostic System FDS102 to a network of category 2. If the Frauscher Diagnostic System FDS102 is connected to a network of category 3 (according to EN 50159:2010), then additional protective measures must be added.
Remediation
Update to FDS102 v2.13.3 or higher
Publication Date: 07.07.2025
CVE-ID: CVE-2025-3705
CVSS v3.1 Base Score: 6.8
CVSS Vector: AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CWE-ID: CWE-78
Summary
Frauscher Sensortechnik GmbH FDS102, FDS101 and FDS-SNMP101 for FAdC/FAdCi R2 and all previous versions are vulnerable to OS Command Injection via malicious configuration file. A physical attacker with no privileges can gain full control of the affected device due to improper neutralization of special elements used in an OS Command ('OS Command Injection') when loading a config file from a USB drive
Affected versions
FDS102 <=v2.13.2, FDS101 <=v1.4.25, FDS-SNMP101 <=v.2.3.9
Mitigation
Security-related application conditions SecRAC
The railway operator must ensure that only authorised personnel or people in the company of authorised personnel have access to the Frauscher Diagnostic System FDS102, FDS101 and FDS-SNMP101.
Remediation
Update FDS101 or FDS102 to FDS102 v2.13.3 or higher
Publication Date: 11.12.2023
CVE-ID: CVE-2023-5500
CVSS v3.1 Base Score: 8.8
CVSS Vector: AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CWE-ID: CWE-94
Summary
Frauscher Sensortechnik GmbH FDS102 for FAdC®/FAdC®i v2.10.1 is vulnerable to a remote code execution (RCE) vulnerability via manipulated parameters of the web interface by using an authenticated session cookie.
This could lead to a full compromise of the FDS102 device.
Affected versions
v2.10.0 and v2.10.1 FDS102 versions
Mitigation
Security-related application conditions SecRAC
The railway operator must ensure that only authorised personnel or people in the company of authorised personnel have access to the Frauscher Diagnostic System FDS102.
The recommendation is to connect the Frauscher Diagnostic System FDS102 to a network of category 2. If the Frauscher Diagnostic System FDS102 is connected to a network of category 3
(according to EN 50159:2010), then additional protective measures must be added.
Remediation
Update to FDS102 v2.10.2 or higher
Publication Date: 21.09.2023
CVE-ID: CVE-2023-4291
CVSS v3.1 Base Score: 9.8
CVSS Vector: AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CWE-ID: CWE-94
Summary
Frauscher Sensortechnik GmbH FDS101 for FAdC®/FAdC®i v1.4.24 and all previous versions are vulnerable to a remote code
execution (RCE) vulnerability via manipulated parameters of the web interface without authentication. This could lead to a full
compromise of the FDS101 device.
Affected versions
v1.4.24 and all previous FDS101 versions
Mitigation
Security-related application conditions SecRAC
The railway operator must ensure that only authorised personnel or people in the company of authorised personnel have access to the Frauscher Diagnostic System FDS101.
The recommendation is to connect the Frauscher Diagnostic System FDS101 to a network of category 2. If the Frauscher Diagnostic System FDS101 is connected to a network of category 3
(according to EN 50159:2010), then additional protective measures must be added.
Remediation
Update to FDS102 v2.10.1 or higher
Publication Date: 21.09.2023
CVE-ID: CVE-2023-4152
CVSS v3.1 Base Score: 7.5
CVSS Vector: AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CWE-ID: CWE-22
Summary
Frauscher Sensortechnik GmbH FDS101 for FAdC®/FAdC®i v1.4.24 and all previous versions are vulnerable to a path traversal
vulnerability of the web interface by a crafted URL without authentication. This enables an remote attacker to read all files on the
filesystem of the FDS101 device.
Affected versions
v1.4.24 and all previous FDS101 versions
Mitigation
Security-related application conditions SecRAC
The railway operator must ensure that only authorised personnel or people in the company of authorised personnel have access to the Frauscher Diagnostic System FDS101.
The recommendation is to connect the Frauscher Diagnostic System FDS101 to a network of category 2. If the Frauscher Diagnostic System FDS101 is connected to a network of category 3
(according to EN 50159:2010), then additional protective measures must be added.
Remediation
Update to FDS102 v2.10.1 or higher
Publication Date: 21.09.2023
CVE-ID: CVE-2023-4292
CVSS v3.1 Base Score: 5.3
CVSS Vector: AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
CWE-ID: CWE-89
Summary
Frauscher Sensortechnik GmbH FDS101 for FAdC®/FAdC®i v1.4.24 and all previous versions are vulnerable to a SQL injection
vulnerability via manipulated parameters of the web interface without authentication. The database contains limited, non-critical
log information.
Affected versions
v1.4.24 and all previous FDS101 versions
Mitigation
Security-related application conditions SecRAC
The railway operator must ensure that only authorised personnel or people in the company of authorised personnel have access to the Frauscher Diagnostic System FDS101.
The recommendation is to connect the Frauscher Diagnostic System FDS101 to a network of category 2. If the Frauscher Diagnostic System FDS101 is connected to a network of category 3
(according to EN 50159:2010), then additional protective measures must be added.
Remediation
Update to FDS102 v2.10.1 or higher
Publication Date: 05.07.2023
CVE-ID: CVE-2023-2880
CVSS v3.1 Base Score: 7.5
CVSS Vector: AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CWE-ID: CWE-22
Summary
Frauscher Sensortechnik GmbH FDS001 for FAdC®/FAdC®i v1.3.3 and all previous versions are vulnerable to a path traversal vulnerability of the web interface by a crafted URL without authentication. This enables a remote attacker to read all files on the filesystem of the FDS001 device.
Note: Orphaned SSH keys exist on the file system, but they cannot be used to log in to the machine.
Affected versions
v1.3.3 and all previous versions
Mitigation
Security-related application conditions SecRAC
The railway operator must ensure that only authorised personnel or people in the company of authorised personnel have access to the Frauscher Diagnostic System FDS001.
The recommendation is to connect the Frauscher Diagnostic System FDS001 to a network of category 2. If the Frauscher Diagnostic System FDS001 is connected to a network of category 3 (according to EN 50159:2010), then additional protective measures must be added.
Remediation
For the Frauscher Diagnostic System FDS001 for FAdC® R1 and FAdC®i R1 no more firmware updates will be provided.
Publication Date: 28.10.2022
CVE-ID: CVE-2022-3575
CVSS v3.1 Base Score: 9.8
CVSS Vector: AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CWE-ID: CWE-434
Summary
FDS102 for FAdC® R2 and FAdC®i R2 v2.8.0 to v2.9.1 are vulnerable to malicious code upload without authentication by using the configuration upload function. This could lead to a complete compromise of the FDS102 device.
Affected versions
v2.8.0, v2.9.0, v2.9.1
Remediation
Update to v2.9.2 or higher
Publication Date: 15.12.2021
Summary
None of our Axle Counters and Wheel Sensors are affected (e.g. FAdC®, ACS2000, RSR110, RSR123, RSR180, ...).
None of our diagnostic products are affected (e.g. FDS, RMD, ASD, ...).
You can contact our experts directly with all security-related questions and comments about our products and solutions. You are also welcome to report potential security risks or problems via this channel. Our experts will get back to you as soon as possible.