Authentication Bypass in Web Manager Feature of Lantronix XPort
CVE-2020-13527
What is CVE-2020-13527?
An authentication bypass vulnerability exists in the Web Manager functionality of Lantronix XPort devices. This flaw allows attackers to exploit a specially crafted HTTP request, resulting in elevated privileges. Consequently, unauthorized users may gain access to sensitive functionalities within the Web Manager, potentially compromising the integrity and security of the affected systems. Organizations using the impacted versions should implement protective measures to mitigate the risks associated with this vulnerability.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Lantronix Lantronix XPort EDGE 3.0.0.0R11 Lantronix XPort EDGE 3.1.0.0R9 Lantronix XPort EDGE 3.4.0.0R12 Lantronix XPort EDGE 4.2.0.0R7 Lantronix SGX 5150 8.7.0.0R1 Lantronix SGX 5150 8.9.0.0R4
References
CVSS V3.1
CVSS V3.0
Timeline
Vulnerability published
Vulnerability Reserved
