CISA: Active exploitation of critical vulnerability in Lantronix EDS5000 (CVE-2025-67038)

Colleagues, a heads-up: CISA reports active exploitation of CVE-2025-67038 in Lantronix EDS5000.
Brief:
- Vulnerability: HTTP RPC command injection allowing root execution. Discovered by Forescout Vedere Labs as part of BRIDGE:BREAK.
- Risk: Full device takeover and lateral propagation across networks.
- Concurrently, CISA confirmed exploitation of three critical UniFi OS vulnerabilities; patches are available.
I recommend immediate patching and restricting device access.
Why this matters: compromise of network converters can enable large-scale attacks.
What are your update plans?
#cybersecurity #vulnerabilities #Lantronix #UniFi

