Known Exploited Vulnerability
9.8
CRITICAL CVSS 3.1
CVE-2025-67038
Lantronix EDS5000 Code Injection Vulnerability - [Actively Exploited]
Description

An issue was discovered in Lantronix EDS5000 2.1.0.0R3. The HTTP RPC module executes a shell command to write logs when user's authentication fails. The username is directly concatenated with the command without any sanitization. This allow attackers to inject arbitrary OS commands into the username parameter. Injected commands are executed with root privileges.

INFO

Published Date :

March 11, 2026, 5:16 p.m.

Last Modified :

Sept. 8, 2026, 7 p.m.

Remotely Exploit :

Yes !
CISA Notification
CISA KEV (Known Exploited Vulnerabilities)

For the benefit of the cybersecurity community and network defenders—and to help every organization better manage vulnerabilities and keep pace with threat activity—CISA maintains the authoritative source of vulnerabilities that have been exploited in the wild.

Description :

Lantronix EDS5000 contains a code injection vulnerability that could allow attackers to inject arbitrary OS commands into the username parameter. Injected commands are executed with root privileges.

Required Action :

Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.

Known Ransomware Campaign Use:

Unknown

Notes :

https://ltrxdev.atlassian.net/wiki/spaces/LTRXTS/pages/2538438657/Latest+Firmware+for+the+EDS5000+series+EDS5008+EDS5016+EDS5032 ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2025-67038

Affected Products

The following products are affected by CVE-2025-67038 vulnerability. Even if cvefeed.io is aware of the exact versions of the products that are affected, the information is not represented in the table below.

ID Vendor Product Action
1 Lantronix eds5032_firmware
2 Lantronix eds5032
3 Lantronix eds5008_firmware
4 Lantronix eds5008
5 Lantronix eds5016_firmware
6 Lantronix eds5016
7 Lantronix g526gp12s_firmware
8 Lantronix g526gp12s
9 Lantronix g526gp17s_firmware
10 Lantronix g526gp17s
11 Lantronix g526gp1cs_firmware
12 Lantronix g526gp1cs
13 Lantronix g526gp1asg_firmware
14 Lantronix g526gp1asg
15 Lantronix g526gp1as_firmware
16 Lantronix g526gp1as
17 Lantronix g527gp22s_firmware
18 Lantronix g527gp22s
19 Lantronix g527gp27s_firmware
20 Lantronix g527gp27s
21 Lantronix g527gp2as_firmware
22 Lantronix g527gp2as
23 Lantronix g527gp2asg_firmware
24 Lantronix g527gp2asg
25 Lantronix g528gp2fs_firmware
26 Lantronix g528gp2fs
27 Lantronix g528gp2fsg_firmware
28 Lantronix g528gp2fsg
29 Lantronix g528gp2fsgc_firmware
30 Lantronix g528gp2fsgc
31 Lantronix x300f202s_firmware
32 Lantronix x300f202s
33 Lantronix x303f202s_firmware
34 Lantronix x303f202s
35 Lantronix x304g00as_firmware
36 Lantronix x304g00as
37 Lantronix x304g000s_firmware
38 Lantronix x304g000s
39 Lantronix x304g002s_firmware
40 Lantronix x304g002s
41 Lantronix x304g007s_firmware
42 Lantronix x304g007s
43 Lantronix x304g00cs_firmware
44 Lantronix x304g00cs
45 Lantronix e228g002s_firmware
46 Lantronix e228g002s
47 Lantronix e228g004s_firmware
48 Lantronix e228g004s
49 Lantronix e228g00cb28_firmware
50 Lantronix e228g00cb28
51 Lantronix e228g00cs_firmware
52 Lantronix e228g00cs
53 Lantronix e213f102s_firmware
54 Lantronix e213f102s
55 Lantronix e214f002s_firmware
56 Lantronix e214f002s
57 Lantronix e214f00cs_firmware
58 Lantronix e214f00cs
59 Lantronix e214g000s_firmware
60 Lantronix e214g000s
61 Lantronix e214g001s_firmware
62 Lantronix e214g001s
63 Lantronix e218f004s_firmware
64 Lantronix e218f004s
65 Lantronix e218g107s_firmware
66 Lantronix e218g107s
CVSS Scores
The Common Vulnerability Scoring System is a standardized framework for assessing the severity of vulnerabilities in software and systems. We collect and displays CVSS scores from various sources for each CVE.
Score Version Severity Vector Exploitability Score Impact Score Source
CVSS 134c704f-9b21-4f2e-91b3-4a467353bcc0
CVSS 3.1 CRITICAL 134c704f-9b21-4f2e-91b3-4a467353bcc0
CVSS 3.1 CRITICAL [email protected]
CVSS 4.0 CRITICAL [email protected]
Solution
The HTTP RPC module is vulnerable to command injection via the username parameter.
  • Apply vendor patches or updates for Lantronix EDS5000 firmware.
  • Sanitize all user inputs, especially usernames used in commands.
  • Restrict privileges of processes executing commands.
  • Disable HTTP RPC if not essential.
Public PoC/Exploit Available at Github

CVE-2025-67038 has a 6 public PoC/Exploit available at Github. Go to the Public Exploits tab to see the list.

References to Advisories, Solutions, and Tools
CWE - Common Weakness Enumeration

While CVE identifies specific instances of vulnerabilities, CWE categorizes the common flaws or weaknesses that can lead to vulnerabilities. CVE-2025-67038 is associated with the following CWEs:

Common Attack Pattern Enumeration and Classification (CAPEC)

We scan GitHub repositories to detect new proof-of-concept exploits. Following list is a collection of public exploits and proof-of-concepts, which have been published on GitHub (sorted by the most recently updated).

Technical analysis of CVEs and security vulnerabilities for defensive research

Updated: 2 months ago
0 stars 0 fork 0 watcher
Born at : July 12, 2026, 8:39 p.m. This repo has been linked 1 different CVEs too.

주요 CVE 분석

Updated: 1 month, 3 weeks ago
0 stars 0 fork 0 watcher
Born at : July 3, 2026, 5:27 a.m. This repo has been linked 154 different CVEs too.

Python CLI tool to check CVE details + nuclei template coverage. Security research writeups in /research.

Python

Updated: 2 months, 2 weeks ago
0 stars 0 fork 0 watcher
Born at : June 28, 2026, 1:27 p.m. This repo has been linked 14 different CVEs too.

CVE-2025-67038 - Draft

Updated: 2 months, 2 weeks ago
0 stars 0 fork 0 watcher
Born at : June 25, 2026, 6:06 a.m. This repo has been linked 2 different CVEs too.

Audit CVE impact, patch status, remediation progress, and verification results across systems.

Makefile Go

Updated: 1 month, 3 weeks ago
3 stars 2 fork 2 watcher
Born at : May 16, 2026, 2:19 a.m. This repo has been linked 61 different CVEs too.

Read-only Linux host checker for supply-chain incident response, including vulnerable kernel posture, risky module state, and known developer-tooling persistence indicators

JavaScript PowerShell

Updated: 2 months ago
1 stars 0 fork 0 watcher
Born at : May 13, 2026, 10:54 p.m. This repo has been linked 47 different CVEs too.

Results are limited to the first 15 repositories due to potential performance issues.

The following list is the news that have been mention CVE-2025-67038 vulnerability anywhere in the article.

  • TheCyberThrone
CISA’s KEV Wave: Ubiquiti, Lantronix, and Cisco Unified CM Join the List

CISA’s Known Exploited Vulnerabilities catalog has had a busy several days. On June 23, 2026, three perfect-10 Ubiquiti UniFi OS flaws and a 9.8 root-access Lantronix bug landed in KEV together, with ... Read more

Published Date: Jun 26, 2026 (2 months, 2 weeks ago)
  • The Hacker News
CISA Warns Critical Lantronix EDS5000 Flaw Is Being Actively Exploited

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday warned of active exploitation of a critical security flaw impacting Lantronix EDS5000 Series devices, urging Federal Civilia ... Read more

Published Date: Jun 24, 2026 (2 months, 2 weeks ago)
  • The Hacker News
22 BRIDGE:BREAK Flaws Expose 20,000 Lantronix and Silex Serial-to-IP Converters

Cybersecurity researchers have identified 22 new vulnerabilities in popular models of serial-to-IP converters from Lantronix and Silex that could be exploited to hijack susceptible devices and tamper ... Read more

Published Date: Apr 21, 2026 (4 months, 3 weeks ago)

The following table lists the changes that have been made to the CVE-2025-67038 vulnerability over time.

Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability's severity, exploitability, or other characteristics.

  • Reanalysis by [email protected]

    Sep. 08, 2026

    Action Type Old Value New Value
    Changed CPE Configuration AND OR *cpe:2.3:o:lantronix:g527gp22s_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lantronix:g527gp22s:-:*:*:*:*:*:*:* AND OR *cpe:2.3:o:lantronix:g527gp22s_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 2.6.0.4R6 OR cpe:2.3:h:lantronix:g527gp22s:-:*:*:*:*:*:*:*
  • Modified Analysis by [email protected]

    Sep. 08, 2026

    Action Type Old Value New Value
    Added CPE Configuration AND OR *cpe:2.3:o:lantronix:eds5032_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 2.2.0.0r1 OR cpe:2.3:h:lantronix:eds5032:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lantronix:g526gp12s_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 2.6.0.4R6 OR cpe:2.3:h:lantronix:g526gp12s:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lantronix:g526gp17s_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 2.6.0.4R6 OR cpe:2.3:h:lantronix:g526gp17s:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lantronix:g526gp1cs_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 2.6.0.4R6 OR cpe:2.3:h:lantronix:g526gp1cs:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lantronix:g526gp1asg_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 2.6.0.4R6 OR cpe:2.3:h:lantronix:g526gp1asg:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lantronix:g526gp1as_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 2.6.0.4R6 OR cpe:2.3:h:lantronix:g526gp1as:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lantronix:g527gp22s_firmware:-:*:*:*:*:*:*:* OR cpe:2.3:h:lantronix:g527gp22s:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lantronix:g527gp27s_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 2.6.0.4R6 OR cpe:2.3:h:lantronix:g527gp27s:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lantronix:g527gp2as_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 2.6.0.4R6 OR cpe:2.3:h:lantronix:g527gp2as:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lantronix:g527gp2asg_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 2.6.0.4R6 OR cpe:2.3:h:lantronix:g527gp2asg:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lantronix:g528gp2fs_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 2.6.0.4R6 OR cpe:2.3:h:lantronix:g528gp2fs:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lantronix:g528gp2fsg_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 2.6.0.4R6 OR cpe:2.3:h:lantronix:g528gp2fsg:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lantronix:g528gp2fsgc_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 2.6.0.4R6 OR cpe:2.3:h:lantronix:g528gp2fsgc:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lantronix:x300f202s_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 2.6.0.4R6 OR cpe:2.3:h:lantronix:x300f202s:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lantronix:x303f202s_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 2.6.0.4R6 OR cpe:2.3:h:lantronix:x303f202s:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lantronix:x304g00as_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 2.6.0.4R6 OR cpe:2.3:h:lantronix:x304g00as:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lantronix:x304g000s_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 2.6.0.4R6 OR cpe:2.3:h:lantronix:x304g000s:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lantronix:x304g002s_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 2.6.0.4R6 OR cpe:2.3:h:lantronix:x304g002s:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lantronix:x304g007s_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 2.6.0.4R6 OR cpe:2.3:h:lantronix:x304g007s:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lantronix:x304g00cs_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 2.6.0.4R6 OR cpe:2.3:h:lantronix:x304g00cs:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lantronix:e228g002s_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 3.21.0.0R1 OR cpe:2.3:h:lantronix:e228g002s:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lantronix:e228g004s_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 3.21.0.0R1 OR cpe:2.3:h:lantronix:e228g004s:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lantronix:e228g00cb28_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 3.21.0.0R1 OR cpe:2.3:h:lantronix:e228g00cb28:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lantronix:e228g00cs_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 3.21.0.0R1 OR cpe:2.3:h:lantronix:e228g00cs:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lantronix:e213f102s_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 3.21.0.0R1 OR cpe:2.3:h:lantronix:e213f102s:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lantronix:e214f002s_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 3.21.0.0R1 OR cpe:2.3:h:lantronix:e214f002s:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lantronix:e214f00cs_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 3.21.0.0R1 OR cpe:2.3:h:lantronix:e214f00cs:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lantronix:e214g000s_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 3.21.0.0R1 OR cpe:2.3:h:lantronix:e214g000s:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lantronix:e214g001s_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 3.21.0.0R1 OR cpe:2.3:h:lantronix:e214g001s:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lantronix:e218f004s_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 3.21.0.0R1 OR cpe:2.3:h:lantronix:e218f004s:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lantronix:e218g107s_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 3.21.0.0R1 OR cpe:2.3:h:lantronix:e218g107s:-:*:*:*:*:*:*:*
    Removed CPE Configuration AND OR *cpe:2.3:o:lantronix:eds5032_firmware:2.1.0.0r3:*:*:*:*:*:*:* OR cpe:2.3:h:lantronix:eds5032:-:*:*:*:*:*:*:*
    Changed CPE Configuration AND OR *cpe:2.3:o:lantronix:eds5008_firmware:2.1.0.0r3:*:*:*:*:*:*:* OR cpe:2.3:h:lantronix:eds5008:-:*:*:*:*:*:*:* AND OR *cpe:2.3:o:lantronix:eds5008_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 2.2.0.0r1 OR cpe:2.3:h:lantronix:eds5008:-:*:*:*:*:*:*:*
    Changed CPE Configuration AND OR *cpe:2.3:o:lantronix:eds5016_firmware:2.1.0.0r3:*:*:*:*:*:*:* OR cpe:2.3:h:lantronix:eds5016:-:*:*:*:*:*:*:* AND OR *cpe:2.3:o:lantronix:eds5016_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 2.2.0.0r1 OR cpe:2.3:h:lantronix:eds5016:-:*:*:*:*:*:*:*
    Added Reference Type ICS-CERT: https://github.com/cisagov/CSAF/blob/develop/csaf_files/OT/white/2026/icsa-26-069-02.json Types: Third Party Advisory
    Added Reference Type ICS-CERT: https://www.lantronix.com/technical-support/security-updates/vulnerability-disclosure-policy/vulnerability-library/?_gl=16c8bez_upMQ.._gaMzQwNjk5ODI5LjE3ODI5MTM3NTk._ga_M2G6RLT5L3*czE3ODI5MTM3NTgkbzEkZzAkdDE3ODI5MTM3NTgkajYwJGwwJGgw Types: Vendor Advisory
  • CVE Modified by 134c704f-9b21-4f2e-91b3-4a467353bcc0

    Sep. 08, 2026

    Action Type Old Value New Value
    Changed SSVC {'id': 'CVE-2025-67038', 'role': 'CISA Coordinator', 'options': [{'exploitation': 'active'}, {'automatable': 'yes'}, {'technicalImpact': 'total'}], 'version': '2.0.3', 'timestamp': '2026-06-23T00:00:00+00:00'} {'id': 'CVE-2025-67038', 'role': 'CISA Coordinator', 'options': [{'exploitation': 'active'}, {'automatable': 'yes'}, {'technicalImpact': 'total'}], 'version': '2.0.3', 'timestamp': '2026-06-24T03:55:55.997634Z'}
    Removed CVSS V3.1 AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
    Removed CWE CWE-94
  • CVE Modified by [email protected]

    Sep. 04, 2026

    Action Type Old Value New Value
    Changed Description An issue was discovered in Lantronix EDS5000 2.1.0.0R3. The HTTP RPC module executes a shell command to write logs when user's authantication fails. The username is directly concatenated with the command without any sanitization. This allow attackers to inject arbitrary OS commands into the username parameter. Injected commands are executed with root privileges. An issue was discovered in Lantronix EDS5000 2.1.0.0R3. The HTTP RPC module executes a shell command to write logs when user's authentication fails. The username is directly concatenated with the command without any sanitization. This allow attackers to inject arbitrary OS commands into the username parameter. Injected commands are executed with root privileges.
    Added CVSS V4.0 AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
    Added CVSS V3.1 AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
    Added CWE CWE-78
    Added Affected New affected value received. <a href="https://github.com/CVEProject/cvelistV5/blob/main/cves/2025/67xxx/CVE-2025-67038.json">CVE-2025-67038</a>
    Added Reference https://github.com/cisagov/CSAF/blob/develop/csaf_files/OT/white/2026/icsa-26-069-02.json
    Added Reference https://www.cisa.gov/news-events/ics-advisories/icsa-26-069-02
    Added Reference https://www.lantronix.com/technical-support/security-updates/vulnerability-disclosure-policy/vulnerability-library/?_gl=16c8bez_upMQ.._gaMzQwNjk5ODI5LjE3ODI5MTM3NTk._ga_M2G6RLT5L3*czE3ODI5MTM3NTgkbzEkZzAkdDE3ODI5MTM3NTgkajYwJGwwJGgw
  • CVE Modified by 134c704f-9b21-4f2e-91b3-4a467353bcc0

    Sep. 04, 2026

    Action Type Old Value New Value
    Added Reference https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2025-67038
    Removed Reference https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2025-67038
    Removed Reference Type https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2025-67038 Types: US Government Resource
  • Modified Analysis by [email protected]

    Jul. 06, 2026

    Action Type Old Value New Value
  • CVE Modified by [email protected]

    Jul. 05, 2026

    Action Type Old Value New Value
    Removed Reference http://eds5000.com
    Removed Reference Type http://eds5000.com Types: Broken Link
  • CVE Modified by [email protected]

    Jul. 05, 2026

    Action Type Old Value New Value
    Removed Reference http://lantronix.com
    Removed Reference Type http://lantronix.com Types: Product
  • CVE Modified by 134c704f-9b21-4f2e-91b3-4a467353bcc0

    Jun. 24, 2026

    Action Type Old Value New Value
    Changed SSVC {'id': 'CVE-2025-67038', 'role': 'CISA Coordinator', 'options': [{'exploitation': 'active'}, {'automatable': 'yes'}, {'technicalImpact': 'total'}], 'version': '2.0.3', 'timestamp': '2026-06-23T17:50:04.910214Z'} {'id': 'CVE-2025-67038', 'role': 'CISA Coordinator', 'options': [{'exploitation': 'active'}, {'automatable': 'yes'}, {'technicalImpact': 'total'}], 'version': '2.0.3', 'timestamp': '2026-06-23T00:00:00+00:00'}
  • Modified Analysis by [email protected]

    Jun. 23, 2026

    Action Type Old Value New Value
    Changed CPE Configuration AND OR *cpe:2.3:o:lantronix:eds5032_firmware:2.1.0.0:r3:*:*:*:*:*:* OR cpe:2.3:h:lantronix:eds5032:-:*:*:*:*:*:*:* AND OR *cpe:2.3:o:lantronix:eds5032_firmware:2.1.0.0r3:*:*:*:*:*:*:* OR cpe:2.3:h:lantronix:eds5032:-:*:*:*:*:*:*:*
    Changed CPE Configuration AND OR *cpe:2.3:o:lantronix:eds5008_firmware:2.1.0.0:r3:*:*:*:*:*:* OR cpe:2.3:h:lantronix:eds5008:-:*:*:*:*:*:*:* AND OR *cpe:2.3:o:lantronix:eds5008_firmware:2.1.0.0r3:*:*:*:*:*:*:* OR cpe:2.3:h:lantronix:eds5008:-:*:*:*:*:*:*:*
    Changed CPE Configuration AND OR *cpe:2.3:o:lantronix:eds5016_firmware:2.1.0.0:r3:*:*:*:*:*:* OR cpe:2.3:h:lantronix:eds5016:-:*:*:*:*:*:*:* AND OR *cpe:2.3:o:lantronix:eds5016_firmware:2.1.0.0r3:*:*:*:*:*:*:* OR cpe:2.3:h:lantronix:eds5016:-:*:*:*:*:*:*:*
    Changed Reference Type MITRE: http://eds5000.com Types: Not Applicable MITRE: http://eds5000.com Types: Broken Link
    Added Reference Type CISA-ADP: https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2025-67038 Types: US Government Resource
  • CVE CISA KEV Update by 9119a7d8-5eab-497f-8521-727c672e3725

    Jun. 23, 2026

    Action Type Old Value New Value
    Added Date Added 2026-06-23
    Added Due Date 2026-06-23
    Added Required Action 2026-06-23
    Added Vulnerability Name 2026-06-23
  • CVE Modified by 134c704f-9b21-4f2e-91b3-4a467353bcc0

    Jun. 23, 2026

    Action Type Old Value New Value
    Added Reference https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2025-67038
    Changed SSVC {'id': 'CVE-2025-67038', 'role': 'CISA Coordinator', 'options': [{'exploitation': 'none'}, {'automatable': 'yes'}, {'technicalImpact': 'total'}], 'version': '2.0.3', 'timestamp': '2026-03-12T16:04:58.981003Z'} {'id': 'CVE-2025-67038', 'role': 'CISA Coordinator', 'options': [{'exploitation': 'active'}, {'automatable': 'yes'}, {'technicalImpact': 'total'}], 'version': '2.0.3', 'timestamp': '2026-06-23T17:50:04.910214Z'}
  • CVE Modified by 134c704f-9b21-4f2e-91b3-4a467353bcc0

    Jun. 17, 2026

    Action Type Old Value New Value
    Added SSVC {'id': 'CVE-2025-67038', 'role': 'CISA Coordinator', 'options': [{'exploitation': 'none'}, {'automatable': 'yes'}, {'technicalImpact': 'total'}], 'version': '2.0.3', 'timestamp': '2026-03-12T16:04:58.981003Z'}
  • CVE Modified by [email protected]

    Jun. 17, 2026

    Action Type Old Value New Value
    Added Affected [{'vendor': 'n/a', 'product': 'n/a', 'versions': [{'status': 'affected', 'version': 'n/a'}]}]
  • Initial Analysis by [email protected]

    Mar. 19, 2026

    Action Type Old Value New Value
    Added CPE Configuration AND OR *cpe:2.3:o:lantronix:eds5032_firmware:2.1.0.0:r3:*:*:*:*:*:* OR cpe:2.3:h:lantronix:eds5032:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lantronix:eds5008_firmware:2.1.0.0:r3:*:*:*:*:*:* OR cpe:2.3:h:lantronix:eds5008:-:*:*:*:*:*:*:*
    Added CPE Configuration AND OR *cpe:2.3:o:lantronix:eds5016_firmware:2.1.0.0:r3:*:*:*:*:*:* OR cpe:2.3:h:lantronix:eds5016:-:*:*:*:*:*:*:*
    Added Reference Type MITRE: http://eds5000.com Types: Not Applicable
    Added Reference Type MITRE: http://lantronix.com Types: Product
    Added Reference Type MITRE: https://www.cisa.gov/news-events/ics-advisories/icsa-26-069-02 Types: Third Party Advisory, VDB Entry
  • CVE Modified by 134c704f-9b21-4f2e-91b3-4a467353bcc0

    Mar. 12, 2026

    Action Type Old Value New Value
    Added CVSS V3.1 AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
    Added CWE CWE-94
  • New CVE Received by [email protected]

    Mar. 11, 2026

    Action Type Old Value New Value
    Added Description An issue was discovered in Lantronix EDS5000 2.1.0.0R3. The HTTP RPC module executes a shell command to write logs when user's authantication fails. The username is directly concatenated with the command without any sanitization. This allow attackers to inject arbitrary OS commands into the username parameter. Injected commands are executed with root privileges.
    Added Reference http://eds5000.com
    Added Reference http://lantronix.com
    Added Reference https://www.cisa.gov/news-events/ics-advisories/icsa-26-069-02
EPSS is a daily estimate of the probability of exploitation activity being observed over the next 30 days. Following chart shows the EPSS score history of the vulnerability.