CVE-2024-43423

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Sep 25, 2024
Updated: Oct 1, 2024
CWE ID 798
CWE ID 259

Summary

CVE-2024-43423: A vulnerability has been identified in the web application of ProGauge MAGLINK LX4 CONSOLE. This issue involves an administrative-level user account, which comes with a fixed password that cannot be modified, thereby posing a security risk if the account falls into the wrong hands. Attackers could potentially exploit this weakness to gain unauthorized access and manipulate system configurations or data. Organizations using this product are advised to apply patches or workarounds to mitigate this threat.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share