Improper access control in LINX-212 and LINX-151 - CVE-2023-46387
Published: September 5, 2024
Vulnerability details
The vulnerability allows a remote attacker to gain unauthorized access to otherwise restricted functionality.
The vulnerability exists due to improper access restrictions within the dpal_config.zml file. A remote attacker can bypass implemented security restrictions and disclose sensitive information on LOYTEC device data point configuration.
Affected software
LINX-151
How to mitigate CVE-2023-46387
LINX-151 - update to 8.2.8