CVE-2025-54807: Dover Fueling Solutions Progauge Maglink Lx 4
Critical severity, CVSS 9.8. EPSS: 0.7% chance of exploitation in the next 30 days.
The secret used for validating authentication tokens is hardcoded in device firmware for affected versions. An attacker who obtains the signing key can bypass authentication, gaining complete access to the system.
Affected products
- Dover Fueling Solutions Progauge Maglink Lx 4: before 4.20.3 (fixed in 4.20.3)
- Dover Fueling Solutions Progauge Maglink Lx Plus: before 4.20.3 (fixed in 4.20.3)
- Dover Fueling Solutions Progauge Maglink Lx Ultimate: before 5.20.3 (fixed in 5.20.3)
Published 2025-09-18. Last modified 2026-06-17.