LOYTEC electronics GmbH LINX Configurator 7.4.10 is vulnerable to Insecure Permissions. An admin credential is passed as a value of URL parameters without encryption, so it allows remote attackers to steal the password and gain full control of Loytec device configuration.
This Cyber News was published on www.tenable.com. Publication date: Thu, 07 Dec 2023 14:56:03 +0000