Lantronix XPort sends weakly encoded credentials within web request headers.
No analysis available yet.
Vendor Workaround
Lantronix states that XPort is an old legacy product and is not designed for strong encryption or TLS/SSL encryption. Users who require stronger encryption are encouraged to upgrade to xPort Edge. https://www.lantronix.com/products/xport-edge/
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-59418 | Lantronix XPort sends weakly encoded credentials within web request headers. |
Tue, 17 Jun 2025 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2025-06-17T21:19:26.741Z
Reserved: 2024-01-19T20:42:14.336Z
Link: CVE-2023-7237
Updated: 2024-08-02T08:57:35.056Z
Status : Modified
Published: 2024-01-23T22:15:16.587
Modified: 2024-11-21T08:45:34.857
Link: CVE-2023-7237
No data.
OpenCVE Enrichment
No data.
EUVD