Securelinx
by Lantronix
CVEs (2)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2018-10383 | Med | 0.40 | 6.1 | 0.02 | May 2, 2019 | Lantronix SecureLinx Spider (SLS) 2.2+ devices have XSS in the auth.asp login page. | ||
| CVE-2005-2189 | 0.00 | — | 0.01 | Jul 11, 2005 | Lantronix SecureLinx console server running firmware 2.0 and 3.0 stores /etc/ssh under the web document root with insufficient access control, which allows remote attackers to obtain sensitive information such as SSH private keys. |
- risk 0.40cvss 6.1epss 0.02
Lantronix SecureLinx Spider (SLS) 2.2+ devices have XSS in the auth.asp login page.
- CVE-2005-2189Jul 11, 2005risk 0.00cvss —epss 0.01
Lantronix SecureLinx console server running firmware 2.0 and 3.0 stores /etc/ssh under the web document root with insufficient access control, which allows remote attackers to obtain sensitive information such as SSH private keys.