CVE-2026-80147
Received Received - Intake

Stack-Based Buffer Overflow in Lantronix SLC8000/EMG8500/EMG7500 Firmware

Vulnerability report for CVE-2026-80147, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-09-22

Last updated on: 2026-09-22

Assigner: VulnCheck

Description

Lantronix SLC8000 before firmware v9.7.0.2, EMG8500/EMG7500 before firmware v9.7.0.1, and all firmware versions of SLB882/SLCx-03/SLCx-02 contain a stack-based buffer overflow vulnerability that allows authenticated attackers to potentially execute arbitrary code by exploiting an undocumented mfc eeprom write command that copies unbounded user input into a bounded stack buffer before passing it to a system() call. Attackers can authenticate as any user to the terminal or CLI interface and supply an oversized input to trigger the overflow, potentially achieving complete loss of confidentiality, integrity, and availability on the affected device and impacting downstream serial-attached devices.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-09-22
Last Modified
2026-09-22
Generated
2026-09-22
AI Q&A
2026-09-22
EPSS Evaluated
N/A
NVD
EUVD

Affected Vendors & Products

Showing 6 associated CPEs
Vendor Product Version / Range
lantronix emg7500 to 9.7.0.1 (exc)
lantronix slc8000 to 9.7.0.2 (exc)
lantronix emg8500 to 9.7.0.1 (exc)
lantronix slb882 *
lantronix slcx-03 *
lantronix slcx-02 *

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-121 A stack-based buffer overflow condition is a condition where the buffer being overwritten is allocated on the stack (i.e., is a local variable or, rarely, a parameter to a function).

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

This is a stack-based buffer overflow in Lantronix devices including SLC8000, EMG8500, EMG7500, SLB882, SLCx-03, and SLCx-02. It occurs when authenticated attackers exploit an undocumented command to write to EEPROM, copying excessive user input into a limited stack buffer before passing it to a system() call. This can lead to arbitrary code execution.

Detection Guidance

Detect this vulnerability by checking the firmware versions of Lantronix devices. Affected versions include SLC8000 before v9.7.0.2, EMG8500/EMG7500 before v9.7.0.1, and all versions of SLB882/SLCx-03/SLCx-02. Use CLI commands like 'show version' or 'system info' to verify firmware. Monitor for unauthorized mfc eeprom write commands in logs.

Impact Analysis

Attackers who gain authentication can trigger the overflow to execute arbitrary code. This may result in complete loss of confidentiality, integrity, and availability on the affected device. It can also impact downstream serial-attached devices connected to the vulnerable system.

Compliance Impact

This vulnerability can severely impact compliance with GDPR and HIPAA due to potential loss of confidentiality and integrity of sensitive data. Exploitation may lead to unauthorized access, data breaches, or system compromise, violating requirements for data protection and access controls in these regulations.

Mitigation Strategies

Immediately update affected Lantronix devices to the latest firmware versions: SLC8000 to v9.7.0.2, EMG8500/EMG7500 to v9.7.0.1. Disable or restrict access to the CLI interface if possible. Implement network segmentation to limit exposure. Monitor for suspicious activity or unauthorized commands.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-80147. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart