The Firmware Analysis and Comparison Tool Project maintains a specialized security analysis platform, with the durable signal centered on web-application input-handling issues including cross-site scripting and cross-site request forgery vulnerabilities. Treat this as a compact vendor profile rather than a broad exposure trend; live severity, exploitation, and current vulnerability counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Firmware Analysis And Comparison Tool Project over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2021-44312HIGH An issue was discovered in Firmware Analysis and Comparison Tool v3.2. Logged in administrators could be targeted by a CSRF attack through visiting a crafted web page. | Mar 30, 2022 | 8.8 | 27 | NO | NO |
CVE-2021-44310MEDIUM An issue was discovered in Firmware Analysis and Comparison Tool v3.2. With administrator privileges, the attacker could perform stored XSS attacks by inserting JavaScript and HTML | Mar 30, 2022 | 4.8 | 19 | NO | NO |
CVE-2020-11499MEDIUM Firmware Analysis and Comparison Tool (FACT) 3 has Stored XSS when updating analysis details via a localhost web request, as demonstrated by mishandling of the tags and version fie | Apr 2, 2020 | 6.1 | 17 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Firmware Analysis And Comparison Tool Project.
Media articles that mention a CVE ID that affects a product developed by Firmware Analysis And Comparison Tool Project — matched by CVE ID, not by vendor name.