Skip to content
Noroxi

Planet records

39 published records for vendor planet.

Bug bounty scope

The product’s vendor appears in a public program. Matched by name; verify the scope text in the program.

All records

39 records
  • The firmware of the PLANET Technology Corp NVR-915 and NVR-1615 before 2020-10-28 embeds default credentials for root access via telnet.

    CriticalCVSS 9.8No exploitEPSS 2%

    planet · nvr-915 firmwareNov 18, 2020

  • An issue in Planet Technologies WDRT-1800AX v1.01-CP21 allows attackers to bypass authentication and escalate privileges to root via manipul

    CriticalCVSS 9.8No exploitEPSS 1%

    planet · wdrt-1800ax firmwareJun 7, 2023

  • FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the ruleNamekey parameter in the web_acl_mgmt_Rules_Apply_post fu

    CriticalCVSS 9.8No exploitEPSS 1%

    planet · wgs-804hpt firmwareMay 20, 2025

  • CVE-2024-8456
    39Monitor

    PLANET Technology switch devices - Missing Authentication for multiple HTTP routes

    CriticalCVSS 9.8No exploitEPSS 1%

    planet · gs-4210-24p2s firmwareSep 30, 2024

  • FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the radIpkey parameter in the web_radiusSrv_post function.

    CriticalCVSS 9.8No exploitEPSS 1%

    planet · wgs-804hpt firmwareMay 20, 2025

  • FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the tacIp parameter in the web_tacplus_serverEdit_post function.

    CriticalCVSS 9.8No exploitEPSS 1%

    planet · wgs-804hpt firmwareMay 20, 2025

  • FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the web_sys_infoContact_post function.

    CriticalCVSS 9.8No exploitEPSS 1%

    planet · wgs-804hpt firmwareMay 20, 2025

  • FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the remote_ip parameter in the web_snmpv3_remote_engineId_add_pos

    CriticalCVSS 9.8No exploitEPSS 1%

    planet · wgs-804hpt firmwareMay 20, 2025

  • FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the byruleEditName parameter in the web_acl_mgmt_Rules_Edit_postc

    CriticalCVSS 9.8No exploitEPSS 1%

    planet · wgs-804hpt firmwareMay 20, 2025

  • FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the stp_conf_name parameter in the web_stp_globalSetting_post fun

    CriticalCVSS 9.8No exploitEPSS 1%

    planet · wgs-804hpt firmwareMay 20, 2025

  • FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the host_ip parameter in the web_snmp_notifyv3_add_post function.

    CriticalCVSS 9.8No exploitEPSS 1%

    planet · wgs-804hpt firmwareMay 20, 2025

  • FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the host_ip parameter in the web_snmp_v3host_add_post function.

    CriticalCVSS 9.8No exploitEPSS 1%

    planet · wgs-804hpt firmwareMay 20, 2025

  • FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the radDftParamKey parameter in the web_radiusSrv_dftParam_post f

    CriticalCVSS 9.8No exploitEPSS 1%

    planet · wgs-804hpt firmwareMay 20, 2025

  • FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the bindEditMACName parameter in the web_acl_bindEdit_post functi

    CriticalCVSS 9.8No exploitEPSS 1%

    planet · wgs-804hpt firmwareMay 20, 2025

  • FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the bytftp_srvip parameter in the web_tool_upgradeManager_post fu

    CriticalCVSS 9.8No exploitEPSS 1%

    planet · wgs-804hpt firmwareMay 20, 2025

  • FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the theauthName parameter in the web_aaa_loginAuthlistEdit functi

    CriticalCVSS 9.8No exploitEPSS 1%

    planet · wgs-804hpt firmwareMay 20, 2025

  • CVE-2024-8450
    39Monitor

    PLANET Technology switch devices - Hard-coded SNMPv1 read-write community string

    CriticalCVSS 9.8No exploitEPSS 0%

    planet · gs-4210-24p2s firmwareSep 30, 2024

  • A format string vulnerability exists in the formPingCmd functionality of Planet WGR-500 v1.3411b190912.

    HighCVSS 8.8No exploitEPSS 7%

    planet · wgr-500 firmwareOct 7, 2025

  • Multiple OS command injection vulnerabilities exist in the swctrl functionality of Planet WGR-500 v1.3411b190912.

    HighCVSS 8.8No exploitEPSS 5%

    planet · wgr-500 firmwareOct 7, 2025

  • Multiple OS command injection vulnerabilities exist in the swctrl functionality of Planet WGR-500 v1.3411b190912.

    HighCVSS 8.8No exploitEPSS 5%

    planet · wgr-500 firmwareOct 7, 2025

  • Multiple OS command injection vulnerabilities exist in the formPingCmd functionality of Planet WGR-500 v1.3411b190912.

    HighCVSS 8.8No exploitEPSS 4%

    planet · wgr-500 firmwareOct 7, 2025

  • Multiple OS command injection vulnerabilities exist in the formPingCmd functionality of Planet WGR-500 v1.3411b190912.

    HighCVSS 8.8No exploitEPSS 4%

    planet · wgr-500 firmwareOct 7, 2025

  • Multiple stack-based buffer overflow vulnerabilities exist in the formPingCmd functionality of Planet WGR-500 v1.3411b190912.

    HighCVSS 8.8No exploitEPSS 1%

    planet · wgr-500 firmwareOct 7, 2025

  • Multiple stack-based buffer overflow vulnerabilities exist in the formPingCmd functionality of Planet WGR-500 v1.3411b190912.

    HighCVSS 8.8No exploitEPSS 1%

    planet · wgr-500 firmwareOct 7, 2025

  • Multiple stack-based buffer overflow vulnerabilities exist in the formPingCmd functionality of Planet WGR-500 v1.3411b190912.

    HighCVSS 8.8No exploitEPSS 1%

    planet · wgr-500 firmwareOct 7, 2025