PT-2023-16111 · Kantech · Kantech Gen1 Iosmart Card Reader

·

CVE-2023-0248

·

Published

2023-12-14

·

Updated

2023-12-21

CVSS v3.1

7.5

High

VectorAV:A/AC:H/PR:N/UI:N/S:C/C:L/I:H/A:L
Name of the Vulnerable Software and Affected Versions Kantech Gen1 ioSmart card reader versions prior to 1.07.02
Description An attacker with physical access to the Kantech Gen1 ioSmart card reader in certain circumstances can recover the reader's communication memory between the card and reader.
Recommendations For versions prior to 1.07.02, update the firmware to version 1.07.02 or later to resolve the issue.

Fix

Memory Leak

Information Disclosure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2023-0248

Affected Products

Kantech Gen1 Iosmart Card Reader