Improper access control in LINX-212 and LINX-151 - CVE-2023-46387
Published: September 5, 2024
LINX-212
LINX-151
Detailed vulnerability description
The vulnerability allows a remote attacker to gain unauthorized access to otherwise restricted functionality.
The vulnerability exists due to improper access restrictions within the dpal_config.zml file. A remote attacker can bypass implemented security restrictions and disclose sensitive information on LOYTEC device data point configuration.