Cyber Resilience

CVE-2023-46389

Loytec Linx-212 Firmware 6.2.4

Public PoC
Published
30 November 2023
Modified
21 November 2024
CVSS Score v3.1 7.5
Click a component to see what it means
Raw vectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
EPSS Score 0.020 79th percentile
Risk Priority 61 floored blend · peak EPSS

CVSS and EPSS are reproduced from their sources (NVD, FIRST EPSS). Risk Priority is our own derived reading, not an NVD score.

Summary

CVE-2023-46389 is a high-severity an unspecified weakness vulnerability in Loytec Linx-212 Firmware. Its CVSS base score is 7.5 (High).

Operationally, ranked in the top 21% of CVEs by exploit likelihood; it is not currently listed in the CISA KEV catalog; a public proof-of-concept is referenced.

EU & UK References

Vulnerability Data

LOYTEC electronics GmbH LINX-212 and LINX-151 devices (all versions) are vulnerable to Incorrect Access Control via registry.xml file. This vulnerability allows remote attackers to disclose sensitive information on LINX configuration.

CWE(s)

Related Threats

CVEs Like This One

CVE-2023-46387Same product: Loytec Linx-151
CVE-2023-46388Same product: Loytec Linx-151
CVE-2023-46386Same product: Loytec Linx-151
CVE-2023-46381Same product: Loytec Linx-212
CVE-2023-46382Same product: Loytec Linx-212
CVE-2023-46380Same product: Loytec Linx-212
CVE-2023-46384Same vendor: Loytec
CVE-2023-46383Same vendor: Loytec
CVE-2023-46385Same vendor: Loytec

Affected Assets

loytec
linx-212 firmware
6.2.4
loytec
linx-151 firmware
7.2.4

Mitigating Controls

No mitigating controls mapped yet. The per-CVE control annotator has not reached this CVE.

References