Time Handling Vulnerability in Dover Fueling Solutions ProGauge MagLink LX4 Devices
CVE-2025-55068
8.8HIGH
What is CVE-2025-55068?
The ProGauge MagLink LX4 devices from Dover Fueling Solutions are susceptible to a vulnerability that occurs when handling Unix time values that exceed a specific threshold. By manipulating the system time, an attacker may exploit this flaw, resulting in potential errors during the authentication process. This could lead to a denial-of-service condition affecting the functionality and accessibility of the devices, posing significant risks to operational continuity.
Affected Version(s)
ProGauge MagLink LX 4 0 < 4.20.3
ProGauge MagLink LX Plus 0 < 4.20.3
ProGauge MagLink LX Ultimate 0 < 5.20.3
References
CVSS V4
Score:
8.8
Severity:
HIGH
Confidentiality:
None
Integrity:
Low
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None
Timeline
Vulnerability published
Vulnerability Reserved
Credit
Pedro Umbelino of Bitsight TRACE reported these vulnerabilities to CISA.