Doverfuelingsolutions
Doverfuelingsolutions Progauge Maglink LX4 Console Firmware: vulnerabilidades y CVE
Doverfuelingsolutions Progauge Maglink LX4 Console Firmware tiene 6 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 4 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE6
Últimos 12 meses0
Críticas4
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2024-45373 | Alta (8.7) | 0.45% | — | 25 sept 2024 | Once logged in to ProGauge MAGLINK LX4 CONSOLE, a valid user can change their privileges to administrator. |
| CVE-2024-45066 | Crítica (10) | 0.79% | — | 25 sept 2024 | A specially crafted POST request to the ProGauge MAGLINK LX CONSOLE IP sub-menu can allow a remote attacker to inject arbitrary commands. |
| CVE-2024-43693 | Crítica (10) | 0.79% | — | 25 sept 2024 | A specially crafted POST request to the ProGauge MAGLINK LX CONSOLE UTILITY sub-menu can allow a remote attacker to inject arbitrary commands. |
| CVE-2024-43692 | Crítica (9.3) | 0.51% | — | 25 sept 2024 | An attacker can directly request the ProGauge MAGLINK LX CONSOLE resource sub page with full privileges by requesting the URL directly. |
| CVE-2024-43423 | Crítica (9.3) | 0.68% | — | 25 sept 2024 | The web application for ProGauge MAGLINK LX4 CONSOLE contains an administrative-level user account with a password that cannot be changed. |
| CVE-2024-41725 | Alta (8.7) | 0.36% | — | 25 sept 2024 | ProGauge MAGLINK LX CONSOLE does not have sufficient filtering on input fields that are used to render pages which may allow cross site scripting. |