CVE-2025-67039
EUVD-2025-20858911.03.2026, 17:16
An issue was discovered in Lantronix EDS3000PS 3.1.0.0R2. The authentication on management pages can be bypassed by appending a specific suffix to the URL and by sending an Authorization header that uses "admin" as the username.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| lantronix | eds3016ps1ns_firmware | 3.1.0.0:r2 |
| lantronix | eds3008ps1ns_firmware | 3.1.0.0:r2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
Vulnerability Media Exposure