CVE-2025-7766: Lantronix Provisioning Manager
High severity, CVSS 8.0. EPSS: 1.8% chance of exploitation in the next 30 days.
Lantronix Provisioning Manager is vulnerable to XML external entity attacks in configuration files supplied by network devices, leading to unauthenticated remote code execution on hosts with Provisioning Manager installed.
Affected products
- Lantronix Provisioning Manager: up to and including 7.10.2
Published 2025-07-22. Last modified 2026-06-17.