Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Ls Electric

First CVE: Aug 31, 2022Active for: 4 yearsTotal CVEs: 16

LS Electric's vulnerability footprint centers on industrial control and automation products, including programmable logic controllers and firmware components such as the XBC and XEC controller families, which serve critical infrastructure and manufacturing environments. The exposure spans a modest volume of disclosures but reaches a prominent segment of the control-systems landscape where deployment longevity and operational constraints make patching cycles slow; defenders should inventory affected devices and assess their network isolation posture. Current severity, exploitation activity, and detailed exposure counts are shown alongside this summary.

FAUCET AI Generated
8
Total CVEs
More Total CVEs than 90% of tracked vendors
0.0
Avg CVEs / Product / Year
Bottom 1%
7.7
Avg CVSS Score
Higher Avg CVSS Score than 73% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Ls Electric over time

Volume of CVEsAvg CVSS Base Score
First CVE
Aug 31, 2022
3 years ago
Most Recent CVE
Feb 15, 2023
1,255 days ago

Products(471 total)

Top CVEs

Signals from CVEs in this vendor scope (8 CVEs).

8 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2023-22807CRITICAL
LS ELECTRIC XBC-DN32U with operating system version 01.80 does not properly control access to the PLC over its internal XGT protocol. An attacker could control and tamper with the
Feb 15, 20239.829NONO
CVE-2023-22804CRITICAL
LS ELECTRIC XBC-DN32U with operating system version 01.80 is missing authentication to create users on the PLC. This could allow an attacker to create and use an account with eleva
Feb 15, 20239.828NONO
CVE-2023-22803HIGH
LS ELECTRIC XBC-DN32U with operating system version 01.80 is missing authentication to perform critical functions to the PLC. This could allow an attacker to change the PLC's mode
Feb 15, 20237.524NONO
CVE-2023-0103HIGH
If an attacker were to access memory locations of LS ELECTRIC XBC-DN32U with operating system version 01.80 that are outside of the communication buffer, the device stops operating
Feb 15, 20237.524NONO
CVE-2023-22806HIGH
LS ELECTRIC XBC-DN32U with operating system version 01.80 transmits sensitive information in cleartext when communicating over its XGT protocol. This could allow an attacker to gai
Feb 15, 20237.523NONO
CVE-2023-0102CRITICAL
LS ELECTRIC XBC-DN32U with operating system version 01.80 is missing authentication for its deletion command. This could allow an attacker to delete arbitrary files.
Feb 15, 20239.122NONO
CVE-2022-2758MEDIUM
Passwords are not adequately encrypted during the communication process between all versions of LS Industrial Systems (LSIS) Co. Ltd LS Electric XG5000 software prior to V4.0 and L
Aug 31, 20225.922NONO
CVE-2023-22805MEDIUM
LS ELECTRIC XBC-DN32U with operating system version 01.80 has improper access control to its read prohibition feature. This could allow a remote attacker to remotely set the featur
Feb 15, 20234.318NONO
View all 8 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products8 CVEs
25%
38%
38%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local0 (0.0%)
Network8 (100.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low7 (87.5%)
High1 (12.5%)
Unknown0 (0.0%)
User Interaction
None8 (100.0%)
Unknown0 (0.0%)
Required0 (0.0%)
Privileges Required
Low1 (12.5%)
High0 (0.0%)
None7 (87.5%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (8 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Ls Electric.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Ls Electric — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Ls Electric's Products

View all 1 CNAs →

Top CWEs