CVE-2020-13528: Medium severity lantronix xport edge vulnerability
An information disclosure vulnerability exists in the Web Manager and telnet CLI functionality of Lantronix XPort EDGE 3.0.0.0R11, 3.1.0.0R9, 3.4.0.0R12 and 4.2.0.0R7. A specially crafted HTTP request can cause information disclosure. An attacker can sniff the network to trigger this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2020-13528?
CVE-2020-13528 has a moderate severity level due to its potential for information disclosure.
How do I fix CVE-2020-13528?
To fix CVE-2020-13528, update the Lantronix XPort Edge firmware to the latest version that addresses this vulnerability.
What versions are affected by CVE-2020-13528?
CVE-2020-13528 affects Lantronix XPort Edge firmware versions 3.0.0.0R11, 3.1.0.0R9, 3.4.0.0R12, and 4.2.0.0R7.
What type of attack exploits CVE-2020-13528?
CVE-2020-13528 can be exploited by an attacker using a specially crafted HTTP request to disclose sensitive information.
Is there a workaround for CVE-2020-13528?
Currently, there are no effective workarounds for CVE-2020-13528 other than applying the firmware update.