PT-2024-15243 · Lantronix · Lantronix Xport

Aarón Flecha Menéndez

·

Published

2024-01-23

·

Updated

2024-08-02

·

CVE-2023-7237

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Lantronix XPort (affected versions not specified)
Description The issue concerns the transmission of weakly encoded credentials within web request headers.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Inadequate Encryption Strength

Weakness Enumeration

Related Identifiers

CVE-2023-7237

Affected Products

Lantronix Xport