Description
Unchecked input for loop condition (CWE-606) in the SNMP agent in Loytec LIP-ME201C, L-INX, L-GATE, L-ROC, L-IOB, L-DALI, L-VIS and L-PAD through 8.4.16 on LINX-A64 allows an unauthenticated remote attacker to cause persistent denial of service (CPU exhaustion) via a crafted SNMP GETNEXT request with a large OID component.
Published: 2026-07-24
Score: 6.6 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

An unchecked loop condition in the SNMP agent firmware allows an unauthenticated attacker to send a crafted SNMP GETNEXT request with an excessively large OID component. The resulting infinite or overly long loop consumes CPU resources, causing a persistent denial of service. The flaw is a classic input validation failure (CWE‑606).

Affected Systems

The vulnerability affects Loytec LINX devices running firmware 8.4.16 or earlier, including the LIP‑ME201C, L‑INX, L‑GATE, L‑ROC, L‑IOB, L‑DALI, L‑VIS and L‑PAD models. The affected products are grouped under the Loytec brand and listed as L‑DALI, L‑GATE, L‑INX, L‑IOB, L‑PAD, L‑ROC, L‑VIS, and LIP‑ME20xC. Firmware must be upgraded to version 8.4.18 or later to contain the fix.

Risk and Exploitability

With a CVSS score of 6.6, the risk is classified as moderate. The EPSS score of less than 1% indicates a low probability of exploitation in the wild, and the vulnerability is not currently listed in the CISA KEV catalog. Nevertheless, an attacker can remotely trigger the CPU exhaustion by sending a single malicious SNMP request from any machine that can reach the target device over the network, without requiring credentials or privileged access.

Generated by OpenCVE AI on August 3, 2026 at 20:14 UTC.

Remediation

Vendor Solution

Upgrade to firmware version 8.4.18.


OpenCVE Recommended Actions

  • Upgrade all affected devices to firmware version 8.4.18 or later.
  • Disable or restrict SNMP access to trusted networks or remove the SNMP service if it is not needed.
  • Implement network‑level rate limiting or firewall rules to mitigate excessive SNMP GETNEXT traffic.

Generated by OpenCVE AI on August 3, 2026 at 20:14 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Mon, 27 Jul 2026 15:45:00 +0000

Type Values Removed Values Added
First Time appeared Loytec
Loytec l-dali
Loytec l-gate
Loytec l-inx
Loytec l-iob
Loytec l-pad
Loytec l-roc
Loytec l-vis
Loytec lip-me20xc
Vendors & Products Loytec
Loytec l-dali
Loytec l-gate
Loytec l-inx
Loytec l-iob
Loytec l-pad
Loytec l-roc
Loytec l-vis
Loytec lip-me20xc

Fri, 24 Jul 2026 18:30:00 +0000

Type Values Removed Values Added
Description Unchecked input for loop condition (CWE-606) in the SNMP agent in Loytec LIP-ME201C, L-INX, L-GATE, L-ROC, L-IOB, L-DALI, L-VIS and L-PAD through 8.4.16 on LINX-A64 allows an unauthenticated remote attacker to cause persistent denial of service (CPU exhaustion) via a crafted SNMP GETNEXT request with a large OID component.
Title Loytec LINX firmware: Unchecked input for loop condition in the SNMP agent
Weaknesses CWE-606
References
Metrics cvssV4_0

{'score': 6.6, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U'}

ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: NCSC.ch

Published:

Updated: 2026-07-24T14:54:34.007Z

Reserved: 2026-06-17T09:48:05.268Z

Link: CVE-2026-55731

cve-icon Vulnrichment

Updated: 2026-07-24T14:54:26.562Z

cve-icon NVD

Status : Deferred

Published: 2026-07-24T15:18:31.393

Modified: 2026-07-27T20:32:11.620

Link: CVE-2026-55731

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-03T20:15:04Z

Weaknesses
  • CWE-606

    Unchecked Input for Loop Condition