CVE-2025-7766

Lantronix Provisioning Manager is vulnerable to XML external entity attacks in configuration files supplied by network devices, leading to unauthenticated remote code execution on hosts with Provisioning Manager installed.
Configurations

No configuration.

History

25 Jul 2025, 15:29

Type Values Removed Values Added
Summary
  • (es) Lantronix Provisioning Manager es vulnerable a ataques de entidades externas XML en archivos de configuración suministrados por dispositivos de red, lo que lleva a la ejecución de código remoto no autenticado en hosts con Provisioning Manager instalado.

22 Jul 2025, 22:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-07-22 22:15

Updated : 2025-07-25 15:29


NVD link : CVE-2025-7766

Mitre link : CVE-2025-7766

CVE.ORG link : CVE-2025-7766


JSON object : View

Products Affected

No product.

CWE
CWE-611

Improper Restriction of XML External Entity Reference