GHSA-cfv5-944v-wgjmCriticalCVSS 9.1

An issue was discovered in Lantronix EDS3000PS 3.1.0.0R2. The authentication on management pages...

Published
March 11, 2026
Last Modified
September 4, 2026

🔗 CVE IDs covered (1)

📋 Description

An issue was discovered in Lantronix EDS3000PS 3.1.0.0R2. The authentication on management pages can be bypassed by appending a specific suffix to the URL and by sending an Authorization header that uses "admin" as the username.

🔗 References (7)