Tellus
Vendor:
First CVE: Jan 3, 2023 · Active for 3 years
14
Total CVEs
More Total CVEs than 92% of tracked products
7.0
Avg CVEs / Year
Higher CVE frequency than 93% of tracked products
7.8
Avg CVSS
Higher Avg CVSS than 66% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Tellus over time
Volume of CVEsAvg CVSS Base Score
First CVE
Jan 3, 2023
3 years ago
Most Recent CVE
May 12, 2026
77 days ago
CVE Severity & Scoring
Tellus14 CVEs
100%
All CVEs353,173 CVEs
45%
40%
11%
High
Attack Vector
Local14 (100.0%)
Network0 (0.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low14 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None1 (7.1%)
Unknown0 (0.0%)
Required13 (92.9%)
Privileges Required
Low1 (7.1%)
High0 (0.0%)
None13 (92.9%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (14 CVEs).
14 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2026-8108HIGH The installation of Fuji Tellus adds a driver to the kernel which grants all users read and write permissions. | May 12, 2026 | 7.8 | 33 | NO | NO |
CVE-2022-46360HIGH Out-of-bounds read vulnerability in V-SFT v6.1.7.0 and earlier and TELLUS v4.0.12.0 and earlier allows a local attacker to obtain the information and/or execute arbitrary code by h | Jan 3, 2023 | 7.8 | 25 | NO | NO |
CVE-2022-43448HIGH Out-of-bounds write vulnerability in V-SFT v6.1.7.0 and earlier and TELLUS v4.0.12.0 and earlier allows a local attacker to obtain the information and/or execute arbitrary code by | Jan 3, 2023 | 7.8 | 25 | NO | NO |
CVE-2023-32270HIGH Access of memory location after end of buffer issue exists in TELLUS v4.0.15.0 and TELLUS Lite v4.0.15.0. Opening a specially crafted V8 file may lead to information disclosure and | Jun 19, 2023 | 7.8 | 23 | NO | NO |
CVE-2023-32542HIGH Out-of-bounds read vulnerability exists in TELLUS v4.0.15.0 and TELLUS Lite v4.0.15.0. Opening a specially crafted V8 file may lead to information disclosure and/or arbitrary code | Jun 19, 2023 | 7.8 | 22 | NO | NO |
CVE-2023-32538HIGH Stack-based buffer overflow vulnerability exists in TELLUS v4.0.15.0 and TELLUS Lite v4.0.15.0. Opening a specially crafted SIM2 file may lead to information disclosure and/or arbi | Jun 19, 2023 | 7.8 | 22 | NO | NO |
CVE-2023-32288HIGH Out-of-bounds read vulnerability exists in TELLUS v4.0.15.0 and TELLUS Lite v4.0.15.0. Opening a specially crafted SIM file may lead to information disclosure and/or arbitrary code | Jun 19, 2023 | 7.8 | 22 | NO | NO |
CVE-2023-32273HIGH Stack-based buffer overflow vulnerability exists in TELLUS v4.0.15.0 and TELLUS Lite v4.0.15.0. Opening a specially crafted SIM2 file may lead to information disclosure and/or arbi | Jun 19, 2023 | 7.8 | 22 | NO | NO |
CVE-2023-32201HIGH Stack-based buffer overflow vulnerability exists in TELLUS v4.0.15.0 and TELLUS Lite v4.0.15.0. Opening a specially crafted SIM2 file may lead to information disclosure and/or arbi | Jun 19, 2023 | 7.8 | 22 | NO | NO |
CVE-2023-47583HIGH Multiple out-of-bounds read vulnerabilities exist in TELLUS Simulator V4.0.17.0 and earlier. If a user opens a specially crafted file (X1 or V9 file), information may be disclosed | Nov 15, 2023 | 7.8 | 21 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (14 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (14 CVEs).
Media Mentions
Signals from CVEs in this product scope (14 CVEs).
Top CNAs Publishing CVEs For Tellus
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 5.0.2.0 | 1 | 7.8 | 0.1% | 0 | 0 |
| 4.0.15.0 | 7 | 7.8 | 0.3% | 0 | 0 |