CVE-2026-80154

Summary

All firmware versions of Lantronix SLC8000, EMG8500, EMG7500, SLB882, SLCx-03, and SLCx-02 contain an authentication bypass vulnerability in the web management portal that allows unauthenticated attackers to derive valid session tokens of logged-in users and bypass source IP and User-Agent validation. Session tokens are generated deterministically from the device model and the current time at one-second resolution, resulting in a small enumerable set of possible active tokens. Attackers can construct a crafted URI that exploits file extension handling in the web server path routing to bypass per-session source-address validation, then use a derived token from a different source address to gain elevated privileges on the affected device and potentially impact downstream serial-attached devices.

Affected Software

VendorProductVersion RangeStatus
LANTRONIXSLC8000*affected
LANTRONIXEMG8500*affected
LANTRONIXEMG7500*affected
LANTRONIXSLB882*affected
LANTRONIXSLCx-03*affected
LANTRONIXSLCx-02*affected

Weaknesses

  • CWE-330: Use of Insufficiently Random Values

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: no
    • Technical Impact: total

References