Author: Angelo Barbosa

CVE-2023-46389 | LOYTEC LINX-151/LINX-212 File Download API /tmp/registry.xml information disclosure

A vulnerability, which was classified as problematic, has been found in LOYTEC LINX-151 and LINX-212. Affected by this issue is some unknown functionality of the file /tmp/registry.xml of the component File Download API. The manipulation leads to information disclosure. This vulnerability is handled as CVE-2023-46389. The attack needs to be initiated within the local network. There is no exploit...

Read More

CVE-2023-46388 | LOYTEC LINX-151/LINX-212 SMTP Client dpal_config.wbx credentials storage

A vulnerability classified as problematic was found in LOYTEC LINX-151 and LINX-212. Affected by this vulnerability is an unknown functionality of the file dpal_config.wbx of the component SMTP Client Handler. The manipulation leads to unprotected storage of credentials. This vulnerability is known as CVE-2023-46388. The attack needs to be done within the local network. There is no exploit...

Read More

CVE-2023-46387 | LOYTEC LINX-151/LINX-212 File Download API dpal_config.zml information disclosure

A vulnerability classified as problematic has been found in LOYTEC LINX-151 and LINX-212. Affected is an unknown function of the file /var/lib/lgtw/dpal_config.zml of the component File Download API. The manipulation leads to information disclosure. This vulnerability is traded as CVE-2023-46387. The attack can only be initiated within the local network. There is no exploit...

Read More