CVE-2025-5310

CRITICAL

Dover Fueling Solutions ProGauge MagLink LX - RCE

Title source: llm
STIX 2.1

Description

Dover Fueling Solutions ProGauge MagLink LX Consoles expose an undocumented and unauthenticated target communication framework (TCF) interface on a specific port. Files can be created, deleted, or modified, potentially leading to remote code execution.

Scores

CVSS v3 9.8
EPSS 0.0073
EPSS Percentile 49.3%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact total

Details

CWE
CWE-306
Status published
Products (3)
Dover Fueling Solutions/ProGauge MagLink LX 4 < 4.20.3
Dover Fueling Solutions/ProGauge MagLink LX Plus < 4.20.3
Dover Fueling Solutions/ProGauge MagLink LX Ultimate < 5.20.3
Published Jun 27, 2025
Tracked Since Feb 18, 2026