Vulnerability index

Browse CVEs

18 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

L Inx Configurator HIGH 7.5
CVE-2023-46383

LOYTEC electronics GmbH LINX Configurator (all versions) uses HTTP Basic Authentication, which transmits usernames and passwords in base64-encoded cl…

No fix yet
Fix from $1,950 2023-11-30
L Inx Configurator HIGH 7.5
CVE-2023-46384

LOYTEC electronics GmbH LINX Configurator (all versions) is vulnerable to Insecure Permissions. Cleartext storage of credentials allows remote attack…

No fix yet
Fix from $1,950 2023-11-30
L Inx Configurator HIGH 7.5
CVE-2023-46385

LOYTEC electronics GmbH LINX Configurator (all versions) is vulnerable to Insecure Permissions. An admin credential is passed as a value of URL param…

No fix yet
Fix from $1,950 2023-11-30
Linx 212 Firmware HIGH 7.5
CVE-2023-46386

LOYTEC electronics GmbH LINX-212 and LINX-151 devices (all versions) are vulnerable to Insecure Permissions via registry.xml file. This vulnerability…

No fix yet
Fix from $1,950 2023-11-30
Linx 212 Firmware HIGH 7.5
CVE-2023-46387

LOYTEC electronics GmbH LINX-212 and LINX-151 devices (all versions) are vulnerable to Incorrect Access Control via dpal_config.zml file. This vulner…

No fix yet
Fix from $1,950 2023-11-30
Linx 212 Firmware HIGH 7.5
CVE-2023-46388

LOYTEC electronics GmbH LINX-212 and LINX-151 devices (all versions) are vulnerable to Insecure Permissions via dpal_config.zml file. This vulnerabil…

No fix yet
Fix from $1,950 2023-11-30
Linx 212 Firmware HIGH 7.5
CVE-2023-46389

LOYTEC electronics GmbH LINX-212 and LINX-151 devices (all versions) are vulnerable to Incorrect Access Control via registry.xml file. This vulnerabi…

No fix yet
Fix from $1,950 2023-11-30
Linx 212 Firmware HIGH 7.5
CVE-2023-46382

LOYTEC LINX-151, LINX-212, LVIS-3ME12-A1, LIOB-586, LIOB-580 V2, LIOB-588, L-INX Configurator devices (all versions) use cleartext HTTP for login.

No fix yet
Fix from $1,950 2023-11-04
Linx 212 Firmware HIGH 8.2
CVE-2023-46381EPSS 7%

LOYTEC LINX-151, LINX-212, LVIS-3ME12-A1, LIOB-586, LIOB-580 V2, LIOB-588, L-INX Configurator devices (all versions) lack authentication for the prei…

No fix yet
Fix from $1,950 2023-11-04
Linx 212 Firmware HIGH 7.5
CVE-2023-46380

LOYTEC LINX-151, LINX-212, LVIS-3ME12-A1, LIOB-586, LIOB-580 V2, LIOB-588, L-INX Configurator devices (all versions) send password-change requests vi…

No fix yet
Fix from $1,950 2023-11-04
Lgate 902 Firmware CRITICAL 9.1
CVE-2018-14916EPSS 17%

LOYTEC LGATE-902 6.3.2 devices allow Arbitrary file deletion.

Fix: 6.4.2+
Fix from $2,300 2019-06-28
Lgate 902 Firmware HIGH 7.5
CVE-2018-14918EPSS 18%

LOYTEC LGATE-902 6.3.2 devices allow Directory Traversal.

Fix: 6.4.2+
Fix from $1,950 2019-06-28
Lgate 902 Firmware MEDIUM 6.1
CVE-2018-14919

LOYTEC LGATE-902 6.3.2 devices allow XSS.

Fix: 6.4.2+
Fix from $1,600 2019-06-28
Lvis 3me Firmware HIGH 8.8
CVE-2017-13996

A Relative Path Traversal issue was discovered in LOYTEC LVIS-3ME versions prior to 6.2.0. The web user interface fails to prevent access to critical…

Fix: after 6.1.1
Fix from $1,950 2017-10-05
Lvis 3me Firmware HIGH 8.1
CVE-2017-13992

An Insufficient Entropy issue was discovered in LOYTEC LVIS-3ME versions prior to 6.2.0. The application does not utilize sufficiently random number …

Fix: after 6.1.1
Fix from $1,950 2017-10-05
Lvis 3me Firmware HIGH 7.5
CVE-2017-13998

An Insufficiently Protected Credentials issue was discovered in LOYTEC LVIS-3ME versions prior to 6.2.0. The application does not sufficiently protec…

Fix: after 6.1.1
Fix from $1,950 2017-10-05
Lvis 3me Firmware MEDIUM 6.1
CVE-2017-13994

A Cross-site Scripting issue was discovered in LOYTEC LVIS-3ME versions prior to 6.2.0. The web interface lacks proper web request validation, which …

Fix: after 6.1.1
Fix from $1,600 2017-10-05
L Switch And L Ip Firmware HIGH 10.0
CVE-2015-7906

LOYTEC LIP-3ECTB 6.0.1, LINX-100, LVIS-3E100, and LIP-ME201 devices allow remote attackers to read a password-hash backup file via unspecified vector…

Mitigation only
Fix from $1,950 2015-12-21