# CVE-2026-14950

## Summary

- **CVE ID:** CVE-2026-14950
- **Severity:** CRITICAL
- **CVSS Score:** 9.8 (CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N)
- **CWE:** CWE-613
- **Published:** Aug 20, 2026
- **Last Modified:** Aug 20, 2026

## Description

An unauthenticated remote attacker in possession of a valid session identifier is able to continue using the session after it should have expired. This increases the risk associated with stolen, leaked, shared, or unattended sessions and may enable unauthorized continued access to the FDS web interface.

## Affected Products

- Frauscher Sensortechnik — FDS 102 (2.1.0)

## References

- [CNA](https://www.certvde.com/en/advisories/VDE-2026-078/)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.60%
- **EPSS Percentile:** 46.6

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-11._