CVE-2025-4338 | Lantronix Device Installer up to 4.4.0.7 xml external entity reference (icsa-25-142-01)
A vulnerability was found in Lantronix Device Installer up to 4.4.0.7. It has been rated as problematic. Affected by this issue is some unknown functionality. The manipulation leads to xml external entity reference. This vulnerability only affects products that are no longer supported by the maintainer.
This vulnerability is handled as CVE-2025-4338. The attack needs to be initiated within the local network. There is no exploit available.