CVE-2025-67034 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

An issue was discovered in Lantronix EDS5000 2.1.0.0R3. An authenticated attacker can inject OS commands into the "name" parameter when deleting SSL credentials…
High CVSS: 8.8

CVE-2025-67034

An issue was discovered in Lantronix EDS5000 2.1.0.0R3. An authenticated attacker can inject OS commands into the "name" parameter when deleting SSL credentials through the management interface. Injected commands are executed with root privileges.
Vendor
Lantronix
Product
Eds5032 Firmware
CWE
CWE-94
Yayın Tarihi
2026-03-11 17:16:50
Güncelleme
2026-03-19 20:23:48
Source Identifier
cve@mitre.org
KEV Date Added
-

Kategoriler

Referanslar