Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2026-80150— Lantronix Autonomous Out-of-Band Devices WebTelnet SSRF via rooturl Parameter

Quick assessment

Affected
LANTRONIX SLC8000
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

Lantronix SLC8000 before firmware v9.7.0.3, EMG8500/EMG7500 before firmware v9.7.0.1, and all firmware versions of SLB882 contain a server-side request forgery vulnerability in the WebSSH/WebTelnet listener that allows unauthenticated attackers to cause the af

CVSS 7.5 · High

Affected Version Matrix 4

VendorProduct Version RangeStatus
LANTRONIX EMG7500 < 9.7.0.1 affected
LANTRONIX EMG8500 < 9.7.0.1 affected
LANTRONIX SLB882 * affected
LANTRONIX SLC8000 < 9.7.0.2 affected
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2026-80150

Vulnerability Information

Shenlong is analyzing...


Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
Lantronix Autonomous Out-of-Band Devices WebTelnet SSRF via rooturl Parameter
Source: CVE Program / CVE List V5
Vulnerability Description
Lantronix SLC8000 before firmware v9.7.0.3, EMG8500/EMG7500 before firmware v9.7.0.1, and all firmware versions of SLB882 contain a server-side request forgery vulnerability in the WebSSH/WebTelnet listener that allows unauthenticated attackers to cause the affected device to establish Telnet connections to attacker-controlled endpoints. The custom shellinaboxd uses the rooturl parameter from the web connection to determine its own IP address; by modifying this parameter an attacker redirects the Telnet terminal connection to an arbitrary host or IP. Attackers can use this capability to enumerate or communicate with internal network endpoints that would otherwise be inaccessible.
Source: CVE Program / CVE List V5
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Source: CVE Program / CVE List V5
Vulnerability Type
服务端请求伪造(SSRF)
Source: CVE Program / CVE List V5

Affected Products

Vendor Product Affected Versions CPE Subscribe
LANTRONIX SLC8000 0 ~ 9.7.0.2 -
LANTRONIX EMG8500 0 ~ 9.7.0.1 -
LANTRONIX EMG7500 0 ~ 9.7.0.1 -
LANTRONIX SLB882 * -

II. Public POCs for CVE-2026-80150

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2026-80150

登录查看更多情报信息。

Other References for CVE-2026-80150 (5)

Same Patch Batch · LANTRONIX · 2026-09-22 · 13 CVEs total

CVE-2026-80155 10.0 CRITICAL Lantronix Autonomous Out-of-Band Devices Unauthenticated Authentication Bypass via snprint
CVE-2026-80144 9.9 CRITICAL Lantronix Autonomous Out-of-Band Devices CLI Command Injection via mfc eeprom write
CVE-2026-80147 9.9 CRITICAL Lantronix Autonomous Out-of-Band Devices Stack-Based Buffer Overflow via mfc eeprom write
CVE-2026-80146 9.9 CRITICAL Lantronix Autonomous Out-of-Band Devices Stack-Based Buffer Overflow via mfc eeprom read
CVE-2026-80143 9.9 CRITICAL Lantronix Autonomous Out-of-Band Devices CLI Command Injection via mfc eeprom read
CVE-2026-80154 9.6 CRITICAL Lantronix Autonomous Out-of-Band Devices Predictable Session Token with Validation Bypass
CVE-2026-80145 9.1 CRITICAL Lantronix Autonomous Out-of-Band Devices CLI Command Injection via set cifs password
CVE-2026-80156 9.1 CRITICAL Lantronix Autonomous Out-of-Band Devices Arbitrary File Write via Upload Filename Validati
CVE-2026-80151 9.1 CRITICAL Lantronix Autonomous Out-of-Band Devices OS Command Injection via set nfs download
CVE-2026-80152 9.1 CRITICAL Lantronix Autonomous Out-of-Band Devices OS Command Injection via set script schedule
CVE-2026-80148 8.6 HIGH Lantronix Autonomous Out-of-Band Devices WebSSH SSRF via Username Truncation
CVE-2026-80149 8.6 HIGH Lantronix Autonomous Out-of-Band Devices WebSSH SSRF via rooturl Parameter

IV. Related Vulnerabilities

V. Comments for CVE-2026-80150

No comments yet


Leave a comment