PT-2023-16111 · Kantech · Kantech Gen1 Iosmart Card Reader
Colin Oflynn
·
Published
2023-12-14
·
Updated
2023-12-21
·
CVE-2023-0248
CVSS v3.1
7.5
High
| Vector | AV:A/AC:H/PR:N/UI:N/S:C/C:L/I:H/A:L |
Name of the Vulnerable Software and Affected Versions
Kantech Gen1 ioSmart card reader versions prior to 1.07.02
Description
An attacker with physical access to the Kantech Gen1 ioSmart card reader in certain circumstances can recover the reader's communication memory between the card and reader.
Recommendations
For versions prior to 1.07.02, update the firmware to version 1.07.02 or later to resolve the issue.
Fix
Memory Leak
Information Disclosure
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Kantech Gen1 Iosmart Card Reader