Lantronix XPort sends weakly encoded credentials within web request headers.
Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-59418 | Lantronix XPort sends weakly encoded credentials within web request headers. |
Solution
No solution given by the vendor.
Workaround
Lantronix states that XPort is an old legacy product and is not designed for strong encryption or TLS/SSL encryption. Users who require stronger encryption are encouraged to upgrade to xPort Edge. https://www.lantronix.com/products/xport-edge/
Tue, 17 Jun 2025 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2025-06-17T21:19:26.741Z
Reserved: 2024-01-19T20:42:14.336Z
Link: CVE-2023-7237
Updated: 2024-08-02T08:57:35.056Z
Status : Modified
Published: 2024-01-23T22:15:16.587
Modified: 2024-11-21T08:45:34.857
Link: CVE-2023-7237
No data.
OpenCVE Enrichment
No data.
EUVD