CVE-2014-125001: Cardosystems Scala Rider q3 Firmware

High severity, CVSS 8.8. EPSS: 3.7% chance of exploitation in the next 30 days.

A vulnerability classified as critical has been found in Cardo Systems Scala Rider Q3. Affected is the file /cardo/api of the Cardo-Updater. Unauthenticated remote code execution with root permissions is possible. Firewalling or disabling the service is recommended.

Affected products

  • Cardosystems Scala Rider q3 Firmware: affected versions not specified

Published 2022-05-24. Last modified 2026-06-17.