Critical severity9.1NVD Advisory· Published Mar 11, 2026· Updated Jul 5, 2026
CVE-2025-67039
CVE-2025-67039
Description
An issue was discovered in Lantronix EDS3000PS 3.1.0.0R2. The authentication on management pages can be bypassed by appending a specific suffix to the URL and by sending an Authorization header that uses "admin" as the username.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- cpe:2.3:o:lantronix:eds3016ps1ns_firmware:3.1.0.0r2:*:*:*:*:*:*:*
- cpe:2.3:o:lantronix:eds3008ps1ns_firmware:3.1.0.0r2:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
1- www.cisa.gov/news-events/ics-advisories/icsa-26-069-02nvdThird Party AdvisoryUS Government Resource
News mentions
0No linked articles in our index yet.