CVE-2025-67041 is a critical command injection vulnerability affecting Lantronix EDS3000PS series devices, specifically firmware 3.1.0.0R2. The flaw arises from insufficient sanitization of the 'host' parameter in the TFTP client within the Filesystem Browser, allowing an attacker to escape the command and execute arbitrary code. With a CVSS score of 9.8 (Critical), this vulnerability permits unauthenticated, remote attackers to achieve root-level command execution, leading to full system compromise. Although there is no evidence of active exploitation or publicly available exploit code, the vulnerability has been noted in community discussions and a CISA alert.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
3.1.0.0r2CPE matchmatch criteria | cpe:2.3:o:lantronix:eds3016ps1ns_firmware:3.1.0.0r2:*:*:*:*:*:*:* | ||
3.1.0.0r2CPE matchmatch criteria | cpe:2.3:o:lantronix:eds3008ps1ns_firmware:3.1.0.0r2:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.