Security Advisory

CVE-2020-13527

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-12-17 23:38:47
Last updated 2024-08-04 12:18:18
Assigner talos
State PUBLISHED

Description

An authentication bypass vulnerability exists in the Web Manager functionality of Lantronix XPort EDGE 3.0.0.0R11, 3.1.0.0R9, 3.4.0.0R12 and 4.2.0.0R7. A specially crafted HTTP request can cause increased privileges. An attacker can send an HTTP request to trigger this vulnerability.