An issue was discovered in Lantronix EDS5000 2.1.0.0R3. The Log Info page allows users to see log files by specifying their names. Due to a missing sanitization in the file name parameter, an authenticated attacker can inject arbitrary OS commands that are executed with root privileges.
CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:XLantronix Eds5008
HWLantronixall versionsLantronix Eds5008 Firmware
OSLantronix2.1.0.0r3Lantronix Eds5016
HWLantronixall versionsLantronix Eds5016 Firmware
OSLantronix2.1.0.0r3Lantronix Eds5032
HWLantronixall versionsLantronix Eds5032 Firmware
OSLantronix2.1.0.0r3
Related vulnerabilities
An issue was discovered in Lantronix EDS5000 2.1.0.0R3. The HTTP RPC module executes a shell command to write ...
An issue was discovered in Lantronix EDS5000 2.1.0.0R3. An authenticated attacker can inject OS commands into ...
OS command injection w Lantronix EDS5000 — wykonanie kodu jako root
An issue was discovered in Lantronix EDS5000 2.1.0.0R3. An authenticated attacker can inject OS commands into ...
Pominięcie uwierzytelnienia w urządzeniach Lantronix EDS3000PS