CVE-2023-46387: Loytec Linx-151 Firmware

High severity, CVSS 7.5. EPSS: 2% chance of exploitation in the next 30 days.

LOYTEC electronics GmbH LINX-212 and LINX-151 devices (all versions) are vulnerable to Incorrect Access Control via dpal_config.zml file. This vulnerability allows remote attackers to disclose sensitive information on Loytec device data point configuration.

Affected products

  • Loytec Linx-151 Firmware: version 7.2.4 only
  • Loytec Linx-212 Firmware: version 6.2.4 only

Published 2023-11-30. Last modified 2026-06-17.