CVE-2025-5310: Dover Fueling Solutions ProGauge MagLink LX Consoles Missing Authentication for Critical Function
Dover Fueling Solutions ProGauge MagLink LX Consoles expose an undocumented and unauthenticated target communication framework (TCF) interface on a specific port. Files can be created, deleted, or modified, potentially leading to remote code execution.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-5310?
CVE-2025-5310 has a high severity due to its potential for remote code execution.
How do I fix CVE-2025-5310?
To fix CVE-2025-5310, upgrade to the latest versions of ProGauge MagLink LX Consoles, specifically version 4.20.3 or 5.20.3 as applicable.
What products are affected by CVE-2025-5310?
CVE-2025-5310 affects Dover Fueling Solutions ProGauge MagLink LX, ProGauge MagLink LX Plus, and ProGauge MagLink LX Ultimate Consoles.
What type of vulnerability is CVE-2025-5310?
CVE-2025-5310 is an undocumented and unauthenticated communication vulnerability in Dover Fueling Solutions ProGauge MagLink LX Consoles.
Can CVE-2025-5310 be exploited remotely?
Yes, CVE-2025-5310 can be exploited remotely since it exposes unauthenticated interfaces that allow for file manipulation.