CVE-2025-67037
An issue was discovered in Lantronix EDS5000 2.1.0.0R3. An authenticated attacker can inject OS commands into the "tunnel" parameter when killing a tunnel connection. Injected commands are executed with root privileges.
Vendor
Product
CWE
Yayın Tarihi
2026-03-11 17:16:51
Güncelleme
2026-03-19 20:13:48
Source Identifier
cve@mitre.org
KEV Date Added
-