PT-2023-16111 · Kantech · Kantech Gen1 Iosmart Card Reader

Colin Oflynn

·

Published

2023-12-14

·

Updated

2023-12-21

·

CVE-2023-0248

CVSS v3.1

7.5

High

VectorAV:A/AC:H/PR:N/UI:N/S:C/C:L/I:H/A:L
Name of the Vulnerable Software and Affected Versions Kantech Gen1 ioSmart card reader versions prior to 1.07.02
Description An attacker with physical access to the Kantech Gen1 ioSmart card reader in certain circumstances can recover the reader's communication memory between the card and reader.
Recommendations For versions prior to 1.07.02, update the firmware to version 1.07.02 or later to resolve the issue.

Fix

Memory Leak

Information Disclosure

Weakness Enumeration

Related Identifiers

CVE-2023-0248

Affected Products

Kantech Gen1 Iosmart Card Reader