CVE-2023-46386

HIGH

LOYTEC electronics GmbH LINX-212/LINX-151 - Info Disclosure

Title source: llm
STIX 2.1

Description

LOYTEC electronics GmbH LINX-212 and LINX-151 devices (all versions) are vulnerable to Insecure Permissions via registry.xml file. This vulnerability allows remote attackers to disclose smtp client account credentials and bypass email authentication.

Scores

CVSS v3 7.5
EPSS 0.0157
EPSS Percentile 72.1%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Details

CWE
CWE-312
Status published
Products (2)
loytec/linx-151_firmware 7.2.4
loytec/linx-212_firmware 6.2.4
Published Nov 30, 2023
Tracked Since Feb 18, 2026