Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
Upgrade to firmware version 8.4.18.
Tracking
Sign in to view the affected projects.
No advisories yet.
Mon, 27 Jul 2026 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Loytec
Loytec l-dali Loytec l-gate Loytec l-inx Loytec l-iob Loytec l-pad Loytec l-roc Loytec l-vis Loytec lip-me20xc |
|
| Vendors & Products |
Loytec
Loytec l-dali Loytec l-gate Loytec l-inx Loytec l-iob Loytec l-pad Loytec l-roc Loytec l-vis Loytec lip-me20xc |
Fri, 24 Jul 2026 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Privilege Management (CWE-269) in `/usr/bin/ltsudo` in Loytec LIP-ME201C, L-INX, L-GATE, L-ROC, L-IOB, L-DALI, L-VIS and L-PAD through 8.4.16 on LINX-A64 allows a `superadmin`-group attacker to reset the password of any LARM user (including the `larmapp` service account) via the `set-passwd` subcommand. | |
| Title | Loytec LINX firmware: Improper Privilege Management in /usr/bin/ltsudo | |
| Weaknesses | CWE-269 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: NCSC.ch
Published:
Updated: 2026-07-24T14:58:22.991Z
Reserved: 2026-06-17T09:48:08.859Z
Link: CVE-2026-12502
Updated: 2026-07-24T14:58:14.685Z
No data.
No data.
OpenCVE Enrichment
Updated: 2026-07-27T15:23:30Z