CVE Feed

    Dashboard / CVE / CVE-2016-5782

    CVE-2016-5782

    An issue was discovered in Locus Energy LGate prior to 1.05H, LGate 50, LGate 100, LGate 101, LGate 120, and LGate 320. Locus Energy meters use a PHP script to manage the energy meter parameters for voltage monitoring and network configuration. The PHP code does not properly validate information that is sent in the POST request.

    Published:Feb 13, 2017
    Last Modified:Apr 20, 2025
    EPS:Feb 13, 2017
    EPSS Score:0.00875
    CVSS Score:8.6

    Affected Products

    Vendor
    Locusenergy
    Product
    Lgate 100
    Vendor
    Locusenergy
    Product
    Lgate 101
    Vendor
    Locusenergy
    Product
    Lgate 120
    Vendor
    Locusenergy
    Product
    Lgate 320
    Vendor
    Locusenergy
    Product
    Lgate 50
    Vendor
    Locusenergy
    Product
    Lgate Firmware

    Exploits

    No exploit reference

    Common Weakness Enumeration

    Common Attack Pattern Enumeration and Classification (CAPEC)

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High