Critical Vulnerabilities Affect Lantronix G520 Series Cellular Gateways
CISA has issued an industrial control systems advisory detailing two critical vulnerabilities in the Lantronix G520 Series Cellular Gateway. CVE-2026-84409 involves improper neutralization of input during web page generation (cross-site scripting) combined with a command execution interface, allowing attackers with metadata influence to execute arbitrary code with root privileges. CVE-2026-91191 stems from improper verification of cryptographic signatures and an exposed production private key, enabling unauthorized software packages to be accepted as authentic and executed with root privileges during boot. Both vulnerabilities affect firmware version 2.6.0.4R6_stable.