PT-2026-23880 · Freedom Factory · Dgen1

Vuldb

·

Published

2026-03-07

·

Updated

2026-03-07

·

CVE-2026-3669

CVSS v3.1

5.3

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions Freedom Factory dGEN1 versions up to 20260221
Description A security issue exists in Freedom Factory dGEN1 related to improper authorization. The issue is within the AlarmService function of the com.dgen.alarm component and requires local access to exploit. The exploit for this issue has been publicly disclosed. The vendor was informed of the disclosure but did not respond.
Recommendations Versions up to 20260221 should be updated when a fix becomes available. As a temporary workaround, consider restricting access to the com.dgen.alarm component to minimize the risk of exploitation.

Exploit

Fix

Improper Authorization

Incorrect Privilege Assignment

Weakness Enumeration

Related Identifiers

CVE-2026-3669

Affected Products

Dgen1