CVE-2025-67038

EUVD-2025-208587
An issue was discovered in Lantronix EDS5000 2.1.0.0R3. The HTTP RPC module executes a shell command to write logs when user's authentication fails. The username is directly concatenated with the command without any sanitization. This allow attackers to inject arbitrary OS commands into the username parameter. Injected commands are executed with root privileges.
OS Command Injection
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
9.8 CRITICAL
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 97.17%
Affected Products (NVD)
VendorProductVersion
lantronixeds5008_firmware
𝑥
< 2.2.0.0r1
lantronixeds5016_firmware
𝑥
< 2.2.0.0r1
lantronixeds5032_firmware
𝑥
< 2.2.0.0r1
lantronixg526gp12s_firmware
𝑥
< 2.6.0.4R6
lantronixg526gp17s_firmware
𝑥
< 2.6.0.4R6
lantronixg526gp1cs_firmware
𝑥
< 2.6.0.4R6
lantronixg526gp1asg_firmware
𝑥
< 2.6.0.4R6
lantronixg526gp1as_firmware
𝑥
< 2.6.0.4R6
lantronixg527gp22s_firmware
𝑥
< 2.6.0.4R6
lantronixg527gp27s_firmware
𝑥
< 2.6.0.4R6
lantronixg527gp2as_firmware
𝑥
< 2.6.0.4R6
lantronixg527gp2asg_firmware
𝑥
< 2.6.0.4R6
lantronixg528gp2fs_firmware
𝑥
< 2.6.0.4R6
lantronixg528gp2fsg_firmware
𝑥
< 2.6.0.4R6
lantronixg528gp2fsgc_firmware
𝑥
< 2.6.0.4R6
lantronixx300f202s_firmware
𝑥
< 2.6.0.4R6
lantronixx303f202s_firmware
𝑥
< 2.6.0.4R6
lantronixx304g00as_firmware
𝑥
< 2.6.0.4R6
lantronixx304g000s_firmware
𝑥
< 2.6.0.4R6
lantronixx304g002s_firmware
𝑥
< 2.6.0.4R6
lantronixx304g007s_firmware
𝑥
< 2.6.0.4R6
lantronixx304g00cs_firmware
𝑥
< 2.6.0.4R6
lantronixe228g002s_firmware
𝑥
< 3.21.0.0R1
lantronixe228g004s_firmware
𝑥
< 3.21.0.0R1
lantronixe228g00cb28_firmware
𝑥
< 3.21.0.0R1
lantronixe228g00cs_firmware
𝑥
< 3.21.0.0R1
lantronixe213f102s_firmware
𝑥
< 3.21.0.0R1
lantronixe214f002s_firmware
𝑥
< 3.21.0.0R1
lantronixe214f00cs_firmware
𝑥
< 3.21.0.0R1
lantronixe214g000s_firmware
𝑥
< 3.21.0.0R1
lantronixe214g001s_firmware
𝑥
< 3.21.0.0R1
lantronixe218f004s_firmware
𝑥
< 3.21.0.0R1
lantronixe218g107s_firmware
𝑥
< 3.21.0.0R1
𝑥
= Vulnerable software versions