Dover Fueling Solutions ProGauge MagLink LX4 Devices Unix Time Handling Vulnerability Leading to Denial-of-Service

Vulnerability

A denial-of-service vulnerability has been identified in Dover Fueling Solutions ProGauge MagLink LX4 devices, including the LX4, LX4 Plus, and LX4 Ultimate models, all prior to their respective latest versions. The issue arises from the devices' failure to properly manage Unix time values beyond a certain threshold. This flaw can be exploited by manually altering the system time, potentially causing authentication errors and creating a denial-of-service condition.

Impact

Exploitation of this vulnerability can lead to authentication errors and a denial-of-service condition, causing the device to become unresponsive or unavailable.

Remediation

Users are advised to update ProGauge MagLink LX4 devices to version 4.20.3 or later for the LX4 and LX4 Plus models, and to version 5.20.3 or later for the LX4 Ultimate model. The update can be downloaded from the Dover Fueling Solutions website. Additionally, it is recommended to install the software behind a firewall to reduce the risk of remote attacks.

Added: Sep 18, 2025, 9:19 PM
Updated: Sep 18, 2025, 9:19 PM

Vulnerability Rating

Custom Algorithm
spread
2.4
impact
2.5
exploitability
4.3
remediation
7.9
relevance
0.5
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.