Dover Fueling Solutions ProGauge MagLink LX4 Devices Default Root Credentials Vulnerability

Vulnerability

A vulnerability exists in Dover Fueling Solutions ProGauge MagLink LX4 devices, including the LX4, LX4 Plus, and LX4 Ultimate models, all prior to specific version updates. These devices come with default root credentials that cannot be changed through standard administrative methods. An attacker with network access to the device can exploit this flaw to gain administrative access.

Impact

Exploitation of this vulnerability allows for unauthorized administrative access to the affected device.

Remediation

Users are advised to update ProGauge MagLink LX4 devices to version 4.20.3 or later. For MagLink LX Ultimate devices, users should update to version 5.20.3 or later. The updates can be downloaded from the Dover Fueling Solutions website. Additionally, it is recommended to install the software behind a firewall to reduce the risk of remote attacks.

Added: Sep 18, 2025, 9:22 PM
Updated: Sep 18, 2025, 9:22 PM

Vulnerability Rating

Custom Algorithm
spread
2.4
impact
7.5
exploitability
4.7
remediation
7.9
relevance
0.5
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.