← Vulnerability feed

Vulnerability record · CVE-2013-7248 · published 26 January 2014

CVE-2013-7248: Franklinfueling ts-550 evo firmware vulnerability

Franklinfueling · Ts 550 Evo Firmware

Franklin Fueling Systems TS-550 evo with firmware 2.0.0.6833 and other versions before 2.4.0 has a hardcoded password for the roleDiag account, which allows remote attackers to gain root privileges, as demonstrated using a cmdWebCheckRole action in a TSA_REQUEST.

10.0 CVSS 2.0 High EPSS 3.8% · top 10.4% CWE-255 · CWE-255
10.0CVSS 2.0 base score
3.8%EPSS exploitation probability, 30 days
NoNot in CISA KEV
2Affected product versions listed by NVD
2References, 2 tagged exploit
17 Jun 2026Last modified by NVD

Description

Franklin Fueling Systems TS-550 evo with firmware 2.0.0.6833 and other versions before 2.4.0 has a hardcoded password for the roleDiag account, which allows remote attackers to gain root privileges, as demonstrated using a cmdWebCheckRole action in a TSA_REQUEST.

AV:N/AC:L/Au:N/C:C/I:C/A:C

Affected products

2 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2013-7248 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

9.8CVE-2023-5846Franklinfueling ts-550 evo firmware vulnerabilityFranklin Fueling System TS-550 versions prior to 1.9.23.8960 are vulnerable to attackers decoding admin credentials, resulting in unauthenticated acc…EPSS 0.28%8.8CVE-2017-6565Franklinfueling ts-550 evo firmware missing authorization vulnerabilityOn Franklin Fueling Systems TS-550 evo 2.3.0.7332 devices, the roleDiag user, which can be obtained by exploiting CVE-2013-7247, has the ability to u…EPSS 1.0%7.5CVE-2021-46420Franklinfueling ts-550 evo firmware path traversal vulnerabilityFranklin Fueling Systems FFS TS-550 evo 2.23.4.8936 is affected by an unauthenticated directory traversal vulnerability, which allows an attacker to …EPSS 5.7%7.5CVE-2021-46421Franklinfueling ts-550 evo firmware path traversal vulnerabilityFranklin Fueling Systems FFS T5 Series 1.8.7.7299 is affected by an unauthenticated directory traversal vulnerability, which allows an attacker to ob…EPSS 6.0%6.5CVE-2017-6564Franklinfueling ts-550 evo firmware missing authorization vulnerabilityOn Franklin Fueling Systems TS-550 evo 2.3.0.7332 devices, the Guest user, which contains the lowest privileges, can post to the idSourceFileName par…EPSS 0.82%5.0CVE-2013-7247Franklinfueling ts-550 evo firmware permissions and access controls vulnerabilitycgi-bin/tsaws.cgi in Franklin Fueling Systems TS-550 evo with firmware 2.0.0.6833 and other versions before 2.4.0 allows remote attackers to discover…EPSS 2.6%8.8CVE-2014-1812Microsoft Windows Group Policy Preferences credential exposure and privilege escalationGroup Policy Preferences in multiple Windows versions stored and distributed passwords in a way that did not properly protect them, allowing any auth…KEVEPSS 65%analysed

Source: NIST National Vulnerability Database (record CVE-2013-7248), CISA KEV, FIRST EPSS (scores of 2026-09-27). This page is refreshed as NVD updates the record.