VendorsLOYTECl-inx_configurator7.4.10
Vulnerabilities

LOYTEC L-INX Configurator 7.4.10

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2023-46384
LOYTEC electronics GmbH LINX Configurator (all versions) is vulnerable to Insecure Permissions. Cleartext storage of credentials allows remote attackers to disclose admin password and bypass an authentication to login Loytec device.
Published 2023-11-30 · Modified
7.5EPSS 0.015
CVE-2023-46383
LOYTEC electronics GmbH LINX Configurator (all versions) uses HTTP Basic Authentication, which transmits usernames and passwords in base64-encoded cleartext and allows remote attackers to steal the password and gain full control of Loytec device configuration.
Published 2023-11-30 · Modified
7.5EPSS 0.014
CVE-2023-46385
LOYTEC electronics GmbH LINX Configurator (all versions) is vulnerable to Insecure Permissions. An admin credential is passed as a value of URL parameters without encryption, so it allows remote attackers to steal the password and gain full control of Loytec device configuration.
Published 2023-11-30 · Modified
7.5EPSS 0.008