An issue was discovered in Lantronix EDS3000PS 3.1.0.0R2. The host parameter of the TFTP client in the Filesystem Browser page is not properly sanitized. This can be exploited to escape from the original command and execute an arbitrary one with root privileges.
References
| Link | Resource |
|---|---|
| http://eds3000ps.com | Not Applicable |
| http://lantronix.com | Product |
| https://www.cisa.gov/news-events/ics-advisories/icsa-26-069-02 | Third Party Advisory US Government Resource |
Configurations
History
19 Mar 2026, 20:09
| Type | Values Removed | Values Added |
|---|---|---|
| Summary |
|
|
| First Time |
Lantronix eds3008ps1ns
Lantronix eds3008ps1ns Firmware Lantronix eds3016ps1ns Lantronix eds3016ps1ns Firmware Lantronix |
|
| CPE | cpe:2.3:h:lantronix:eds3008ps1ns:-:*:*:*:*:*:*:* cpe:2.3:h:lantronix:eds3016ps1ns:-:*:*:*:*:*:*:* cpe:2.3:o:lantronix:eds3008ps1ns_firmware:3.1.0.0:r2:*:*:*:*:*:* cpe:2.3:o:lantronix:eds3016ps1ns_firmware:3.1.0.0:r2:*:*:*:*:*:* |
|
| References | () http://eds3000ps.com - Not Applicable | |
| References | () http://lantronix.com - Product | |
| References | () https://www.cisa.gov/news-events/ics-advisories/icsa-26-069-02 - Third Party Advisory, US Government Resource |
11 Mar 2026, 20:16
| Type | Values Removed | Values Added |
|---|---|---|
| CWE | CWE-78 CWE-620 CWE-288 |
|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 9.8 |
11 Mar 2026, 17:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-03-11 17:16
Updated : 2026-03-19 20:09
NVD link : CVE-2025-67041
Mitre link : CVE-2025-67041
CVE.ORG link : CVE-2025-67041
JSON object : View
Products Affected
lantronix
- eds3008ps1ns_firmware
- eds3008ps1ns
- eds3016ps1ns_firmware
- eds3016ps1ns
