Beveiligingsadvies

CVE-2025-67034

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-03-11 00:00:00
Laatst bijgewerkt 2026-09-04 20:22:44
Toegewezen door mitre
CVSS-score 8.6
Status PUBLISHED

Beschrijving

An issue was discovered in Lantronix EDS5000 2.1.0.0R3. An authenticated attacker can inject OS commands into the "name" parameter when deleting SSL credentials through the management interface. Injected commands are executed with root privileges.