Vulnerabilities > Firmware Analysis AND Comparison Tool Project

DATE CVE VULNERABILITY TITLE RISK
2022-03-30 CVE-2021-44310 Cross-site Scripting vulnerability in Firmware Analysis and Comparison Tool Project Firmware Analysis and Comparison Tool 3.2
An issue was discovered in Firmware Analysis and Comparison Tool v3.2.
3.5
2022-03-30 CVE-2021-44312 Cross-Site Request Forgery (CSRF) vulnerability in Firmware Analysis and Comparison Tool Project Firmware Analysis and Comparison Tool 3.2
An issue was discovered in Firmware Analysis and Comparison Tool v3.2.
6.8
2020-04-02 CVE-2020-11499 Cross-site Scripting vulnerability in Firmware Analysis and Comparison Tool Project Firmware Analysis and Comparison Tool 3.0
Firmware Analysis and Comparison Tool (FACT) 3 has Stored XSS when updating analysis details via a localhost web request, as demonstrated by mishandling of the tags and version fields in helperFunctions/mongo_task_conversion.py.
4.3