Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2026-80154— Lantronix Autonomous Out-of-Band Devices Predictable Session Token with Validation Bypass

Quick assessment

Affected
LANTRONIX SLC8000
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

All firmware versions of Lantronix SLC8000, EMG8500, EMG7500, SLB882, SLCx-03, and SLCx-02 contain an authentication bypass vulnerability in the web management portal that allows unauthenticated attackers to derive valid session tokens of logged-in users and b

CVSS 9.6 · Critical

Affected Version Matrix 6

VendorProduct Version RangeStatus
LANTRONIX EMG7500 * affected
LANTRONIX EMG8500 * affected
LANTRONIX SLB882 * affected
LANTRONIX SLC8000 * affected
LANTRONIX SLCx-02 * affected
LANTRONIX SLCx-03 * affected
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2026-80154

Vulnerability Information

Shenlong is analyzing...


Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
Lantronix Autonomous Out-of-Band Devices Predictable Session Token with Validation Bypass
Source: CVE Program / CVE List V5
Vulnerability Description
All firmware versions of Lantronix SLC8000, EMG8500, EMG7500, SLB882, SLCx-03, and SLCx-02 contain an authentication bypass vulnerability in the web management portal that allows unauthenticated attackers to derive valid session tokens of logged-in users and bypass source IP and User-Agent validation. Session tokens are generated deterministically from the device model and the current time at one-second resolution, resulting in a small enumerable set of possible active tokens. Attackers can construct a crafted URI that exploits file extension handling in the web server path routing to bypass per-session source-address validation, then use a derived token from a different source address to gain elevated privileges on the affected device and potentially impact downstream serial-attached devices.
Source: CVE Program / CVE List V5
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H
Source: CVE Program / CVE List V5
Vulnerability Type
使用不充分的随机数
Source: CVE Program / CVE List V5

Affected Products

Vendor Product Affected Versions CPE Subscribe
LANTRONIX SLC8000 * -
LANTRONIX EMG8500 * -
LANTRONIX EMG7500 * -
LANTRONIX SLB882 * -
LANTRONIX SLCx-03 * -
LANTRONIX SLCx-02 * -

II. Public POCs for CVE-2026-80154

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2026-80154

登录查看更多情报信息。

Other References for CVE-2026-80154 (2)

Same Patch Batch · LANTRONIX · 2026-09-22 · 13 CVEs total

CVE-2026-80155 10.0 CRITICAL Lantronix Autonomous Out-of-Band Devices Unauthenticated Authentication Bypass via snprint
CVE-2026-80144 9.9 CRITICAL Lantronix Autonomous Out-of-Band Devices CLI Command Injection via mfc eeprom write
CVE-2026-80147 9.9 CRITICAL Lantronix Autonomous Out-of-Band Devices Stack-Based Buffer Overflow via mfc eeprom write
CVE-2026-80146 9.9 CRITICAL Lantronix Autonomous Out-of-Band Devices Stack-Based Buffer Overflow via mfc eeprom read
CVE-2026-80143 9.9 CRITICAL Lantronix Autonomous Out-of-Band Devices CLI Command Injection via mfc eeprom read
CVE-2026-80145 9.1 CRITICAL Lantronix Autonomous Out-of-Band Devices CLI Command Injection via set cifs password
CVE-2026-80156 9.1 CRITICAL Lantronix Autonomous Out-of-Band Devices Arbitrary File Write via Upload Filename Validati
CVE-2026-80151 9.1 CRITICAL Lantronix Autonomous Out-of-Band Devices OS Command Injection via set nfs download
CVE-2026-80152 9.1 CRITICAL Lantronix Autonomous Out-of-Band Devices OS Command Injection via set script schedule
CVE-2026-80148 8.6 HIGH Lantronix Autonomous Out-of-Band Devices WebSSH SSRF via Username Truncation
CVE-2026-80149 8.6 HIGH Lantronix Autonomous Out-of-Band Devices WebSSH SSRF via rooturl Parameter
CVE-2026-80150 7.5 HIGH Lantronix Autonomous Out-of-Band Devices WebTelnet SSRF via rooturl Parameter

IV. Related Vulnerabilities

V. Comments for CVE-2026-80154

No comments yet


Leave a comment