register values that are inputs to the odorant injection logic such that
too much or too little odorant is injected into a gas line.
Project Subscriptions
No data.
No advisories yet.
Solution
GPL Odorizers recommends users update to the latest software version of the GPL750 in connection with the latest firmware from Horner Automation for the XL4, XL4 Prime, XL7, and XL7 Prime devices.https://lincenergysystems-my.sharepoint.com/:f:/p/h_baer/IgDYaHIhXpyLQJvnKPd6b80TAUgV7Lp8qmVYBFUb0lmr7ak?e=JLeADm. https://lincenergysystems-my.sharepoint.com/:f:/p/h_baer/IgDYaHIhXpyLQJvnKPd6b80TAUgV7Lp8qmVYBFUb0lmr7ak?e=JLeADm
Workaround
No workaround given by the vendor.
Thu, 09 Apr 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A low-privileged remote attacker can send Modbus packets to manipulate register values that are inputs to the odorant injection logic such that too much or too little odorant is injected into a gas line. | |
| Title | GPL Odorizers GPL750 Missing Authentication for Critical Function | |
| Weaknesses | CWE-306 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2026-04-09T20:04:26.208Z
Reserved: 2026-03-19T19:21:21.967Z
Link: CVE-2026-4436
No data.
Status : Received
Published: 2026-04-09T20:16:27.903
Modified: 2026-04-09T20:16:27.903
Link: CVE-2026-4436
No data.
OpenCVE Enrichment
No data.