Vulnerability index

Browse CVEs

39 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

CRITICAL 9.8 CVE-2025-70082 An issue in Lantronix EDS3000PS v.3.1.0.0R2 allows an attacker to execute arbitrary code and obtain sensitive information via the ltrx_evo component Eds3016ps1ns Firmware Mitigation only Fix from $2,3002026-03-11 CRITICAL 9.8 CVE-2025-67038 KEVEPSS 14% An issue was discovered in Lantronix EDS5000 2.1.0.0R3. The HTTP RPC module executes a shell command to write logs when user's authantication fails. … Eds5032 Firmware Mitigation only Fix from $2,3002026-03-11 CRITICAL 9.8 CVE-2025-67041 An issue was discovered in Lantronix EDS3000PS 3.1.0.0R2. The host parameter of the TFTP client in the Filesystem Browser page is not properly saniti… Eds3016ps1ns Firmware Mitigation only Fix from $2,3002026-03-11 CRITICAL 9.1 CVE-2025-67039 An issue was discovered in Lantronix EDS3000PS 3.1.0.0R2. The authentication on management pages can be bypassed by appending a specific suffix to th… Eds3016ps1ns Firmware Mitigation only Fix from $2,3002026-03-11 CRITICAL 9.8 CVE-2025-67035 An issue was discovered in Lantronix EDS5000 2.1.0.0R3. The SSH Client and SSH Server pages are affected by multiple OS injection vulnerabilities due… Eds5032 Firmware Mitigation only Fix from $2,3002026-03-11 HIGH 8.8 CVE-2025-67036 An issue was discovered in Lantronix EDS5000 2.1.0.0R3. The Log Info page allows users to see log files by specifying their names. Due to a missing s… Eds5032 Firmware Mitigation only Fix from $1,9502026-03-11 HIGH 8.8 CVE-2025-67037 An issue was discovered in Lantronix EDS5000 2.1.0.0R3. An authenticated attacker can inject OS commands into the "tunnel" parameter when killing a t… Eds5032 Firmware Mitigation only Fix from $1,9502026-03-11 HIGH 8.8 CVE-2025-67034 An issue was discovered in Lantronix EDS5000 2.1.0.0R3. An authenticated attacker can inject OS commands into the "name" parameter when deleting SSL … Eds5032 Firmware Mitigation only Fix from $1,9502026-03-11 HIGH 7.5 CVE-2023-7237 Lantronix XPort sends weakly encoded credentials within web request headers. Xport Edge Firmware Mitigation only Fix from $1,9502024-01-23 CRITICAL 9.9 CVE-2021-21881EPSS 36% An OS command injection vulnerability exists in the Web Manager Wireless Network Scanner functionality of Lantronix PremierWave 2050 8.9.0.0R4. A spe… Premierwave 2050 Firmware No fix yet Fix from $2,3002021-12-22 CRITICAL 9.9 CVE-2021-21883EPSS 6% An OS command injection vulnerability exists in the Web Manager Diagnostics: Ping functionality of Lantronix PremierWave 2050 8.9.0.0R4. A specially-… Premierwave 2050 Firmware No fix yet Fix from $2,3002021-12-22 CRITICAL 9.9 CVE-2021-21889 A stack-based buffer overflow vulnerability exists in the Web Manager Ping functionality of Lantronix PremierWave 2050 8.9.0.0R4 (in QEMU). A special… Premierwave 2050 Firmware No fix yet Fix from $2,3002021-12-22 CRITICAL 9.9 CVE-2021-21892EPSS 30% A stack-based buffer overflow vulnerability exists in the Web Manager FsUnmount functionality of Lantronix PremierWave 2050 8.9.0.0R4 (in QEMU). A sp… Premierwave 2050 Firmware No fix yet Fix from $2,3002021-12-22 CRITICAL 9.1 CVE-2021-21884EPSS 5% An OS command injection vulnerability exists in the Web Manager SslGenerateCSR functionality of Lantronix PremierWave 2050 8.9.0.0R4. A specially-cra… Premierwave 2050 Firmware No fix yet Fix from $2,3002021-12-22 CRITICAL 9.1 CVE-2021-21887 A stack-based buffer overflow vulnerability exists in the Web Manager SslGenerateCSR functionality of Lantronix PremierWave 2050 8.9.0.0R4 (in QEMU).… Premierwave 2050 Firmware No fix yet Fix from $2,3002021-12-22 CRITICAL 9.1 CVE-2021-21888 An OS command injection vulnerability exists in the Web Manager SslGenerateCertificate functionality of Lantronix PremierWave 2050 8.9.0.0R4 (in QEMU… Premierwave 2050 Firmware No fix yet Fix from $2,3002021-12-22 CRITICAL 9.1 CVE-2021-21890 A stack-based buffer overflow vulnerability exists in the Web Manager FsBrowseClean functionality of Lantronix PremierWave 2050 8.9.0.0R4 (in QEMU). … Premierwave 2050 Firmware No fix yet Fix from $2,3002021-12-22 CRITICAL 9.1 CVE-2021-21891 A stack-based buffer overflow vulnerability exists in the Web Manager FsBrowseClean functionality of Lantronix PremierWave 2050 8.9.0.0R4 (in QEMU). … Premierwave 2050 Firmware No fix yet Fix from $2,3002021-12-22 CRITICAL 9.1 CVE-2021-21894 A directory traversal vulnerability exists in the Web Manager FsTFtp functionality of Lantronix PremierWave 2050 8.9.0.0R4 (in QEMU). A specially cra… Premierwave 2050 Firmware No fix yet Fix from $2,3002021-12-22 HIGH 8.8 CVE-2021-21882EPSS 6% An OS command injection vulnerability exists in the Web Manager FsUnmount functionality of Lantronix PremierWave 2050 8.9.0.0R4. A specially-crafted … Premierwave 2050 Firmware No fix yet Fix from $1,9502021-12-22 HIGH 7.2 CVE-2021-21880 A directory traversal vulnerability exists in the Web Manager FsCopyFile functionality of Lantronix PremierWave 2050 8.9.0.0R4. A specially-crafted H… Premierwave 2050 Firmware No fix yet Fix from $1,9502021-12-22 HIGH 7.2 CVE-2021-21885 A directory traversal vulnerability exists in the Web Manager FsMove functionality of Lantronix PremierWave 2050 8.9.0.0R4. A specially crafted HTTP … Premierwave 2050 Firmware No fix yet Fix from $1,9502021-12-22 HIGH 7.2 CVE-2021-21895 A directory traversal vulnerability exists in the Web Manager FsTFtp functionality of Lantronix PremierWave 2050 8.9.0.0R4 (in QEMU). A specially cra… Premierwave 2050 Firmware No fix yet Fix from $1,9502021-12-22 MEDIUM 6.5 CVE-2021-21896 A directory traversal vulnerability exists in the Web Manager FsBrowseClean functionality of Lantronix PremierWave 2050 8.9.0.0R4 (in QEMU). A specia… Premierwave 2050 Firmware No fix yet Fix from $1,6002021-12-22 CRITICAL 9.9 CVE-2021-21872EPSS 6% An OS command injection vulnerability exists in the Web Manager Diagnostics: Traceroute functionality of Lantronix PremierWave 2050 8.9.0.0R4. A spec… Premierwave 2050 Firmware No fix yet Fix from $2,3002021-12-22 CRITICAL 9.1 CVE-2021-21873 A specially-crafted HTTP request can lead to arbitrary command execution in RSA keypasswd parameter. An attacker can make an authenticated HTTP reque… Premierwave 2050 Firmware No fix yet Fix from $2,3002021-12-22 CRITICAL 9.1 CVE-2021-21874 A specially-crafted HTTP request can lead to arbitrary command execution in DSA keypasswd parameter. An attacker can make an authenticated HTTP reque… Premierwave 2050 Firmware No fix yet Fix from $2,3002021-12-22 CRITICAL 9.1 CVE-2021-21875 A specially-crafted HTTP request can lead to arbitrary command execution in EC keypasswd parameter. An attacker can make an authenticated HTTP reques… Premierwave 2050 Firmware No fix yet Fix from $2,3002021-12-22 CRITICAL 9.1 CVE-2021-21876 Specially-crafted HTTP requests can lead to arbitrary command execution in PUT requests. An attacker can make authenticated HTTP requests to trigger … Premierwave 2050 Firmware No fix yet Fix from $2,3002021-12-22 CRITICAL 9.1 CVE-2021-21877 Specially-crafted HTTP requests can lead to arbitrary command execution in “GET” requests. An attacker can make authenticated HTTP requests to trigge… Premierwave 2050 Firmware No fix yet Fix from $2,3002021-12-22