PT-2025-24427 · Lucky · Lucky Lm-520-Sc+2
Zeke
·
Published
2025-06-09
·
Updated
2025-06-09
·
CVE-2025-5876
CVSS v3.1
5.3
Medium
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Lucky LM-520-SC, LM-520-FSC and LM-520-FSC-SAM up to 20250321
Description
A vulnerability classified as problematic was found in the affected devices, leading to missing authentication. The manipulation can be launched remotely, and the exploit has been disclosed to the public. The vendor was contacted early about this disclosure but did not respond in any way. The attack affects an unknown functionality.
Recommendations
For Lucky LM-520-SC, LM-520-FSC and LM-520-FSC-SAM up to 20250321, consider restricting remote access until a fix is available.
As a temporary workaround, consider implementing additional authentication measures to minimize the risk of exploitation.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Missing Authentication
Improper Authentication
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Lucky Lm-520-Fsc
Lucky Lm-520-Fsc-Sam
Lucky Lm-520-Sc