Записи Planet
39 опубликованных записей вендора planet.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 0
- С записью об исправлении
- 2,6 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-121 Stack-based Buffer Overflow19
- CWE-798 Use of Hard-coded Credentials4
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')4
- CWE-280 Improper Handling of Insufficient Permissions or Privileges1
- CWE-287 Improper Authentication1
- CWE-306 Missing Authentication for Critical Function1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEОхват bug bounty
Вендор продукта присутствует в публичной программе. Сопоставление по имени; проверьте текст scope в программе.
Все записи
39 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
40В плане | CVE-2020-26097Эксплойта нет | The firmware of the PLANET Technology Corp NVR-915 and NVR-1615 before 2020-10-28 embeds default credentials for root access via telnet.planet · nvr-915 firmware · CWE-798 | Критическая9,8 | — | 1,8 % | 18 нояб. 2020 г. |
39Наблюдать | CVE-2023-33553Эксплойта нет | An issue in Planet Technologies WDRT-1800AX v1.01-CP21 allows attackers to bypass authentication and escalate privileges to root via manipulplanet · wdrt-1800ax firmware · CWE-287 | Критическая9,8 | — | 1,0 % | 7 июн. 2023 г. |
39Наблюдать | CVE-2025-44893Эксплойта нет | FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the ruleNamekey parameter in the web_acl_mgmt_Rules_Apply_post fuplanet · wgs-804hpt firmware · CWE-121 | Критическая9,8 | — | 0,7 % | 20 мая 2025 г. |
39Наблюдать | CVE-2024-8456Эксплойта нет | PLANET Technology switch devices - Missing Authentication for multiple HTTP routesplanet · gs-4210-24p2s firmware · CWE-306 | Критическая9,8 | — | 0,6 % | 30 сент. 2024 г. |
39Наблюдать | CVE-2025-44887Эксплойта нет | FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the radIpkey parameter in the web_radiusSrv_post function.planet · wgs-804hpt firmware · CWE-121 | Критическая9,8 | — | 0,5 % | 20 мая 2025 г. |
39Наблюдать | CVE-2025-44883Эксплойта нет | FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the tacIp parameter in the web_tacplus_serverEdit_post function.planet · wgs-804hpt firmware · CWE-121 | Критическая9,8 | — | 0,5 % | 20 мая 2025 г. |
39Наблюдать | CVE-2025-44884Эксплойта нет | FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the web_sys_infoContact_post function.planet · wgs-804hpt firmware · CWE-121 | Критическая9,8 | — | 0,5 % | 20 мая 2025 г. |
39Наблюдать | CVE-2025-44885Эксплойта нет | FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the remote_ip parameter in the web_snmpv3_remote_engineId_add_posplanet · wgs-804hpt firmware · CWE-121 | Критическая9,8 | — | 0,5 % | 20 мая 2025 г. |
39Наблюдать | CVE-2025-44886Эксплойта нет | FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the byruleEditName parameter in the web_acl_mgmt_Rules_Edit_postcplanet · wgs-804hpt firmware · CWE-121 | Критическая9,8 | — | 0,5 % | 20 мая 2025 г. |
39Наблюдать | CVE-2025-44888Эксплойта нет | FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the stp_conf_name parameter in the web_stp_globalSetting_post funplanet · wgs-804hpt firmware · CWE-121 | Критическая9,8 | — | 0,5 % | 20 мая 2025 г. |
39Наблюдать | CVE-2025-44890Эксплойта нет | FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the host_ip parameter in the web_snmp_notifyv3_add_post function.planet · wgs-804hpt firmware · CWE-121 | Критическая9,8 | — | 0,5 % | 20 мая 2025 г. |
39Наблюдать | CVE-2025-44891Эксплойта нет | FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the host_ip parameter in the web_snmp_v3host_add_post function.planet · wgs-804hpt firmware · CWE-121 | Критическая9,8 | — | 0,5 % | 20 мая 2025 г. |
39Наблюдать | CVE-2025-44894Эксплойта нет | FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the radDftParamKey parameter in the web_radiusSrv_dftParam_post fplanet · wgs-804hpt firmware · CWE-121 | Критическая9,8 | — | 0,5 % | 20 мая 2025 г. |
39Наблюдать | CVE-2025-44896Эксплойта нет | FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the bindEditMACName parameter in the web_acl_bindEdit_post functiplanet · wgs-804hpt firmware · CWE-121 | Критическая9,8 | — | 0,5 % | 20 мая 2025 г. |
39Наблюдать | CVE-2025-44897Эксплойта нет | FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the bytftp_srvip parameter in the web_tool_upgradeManager_post fuplanet · wgs-804hpt firmware · CWE-121 | Критическая9,8 | — | 0,5 % | 20 мая 2025 г. |
39Наблюдать | CVE-2025-44898Эксплойта нет | FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the theauthName parameter in the web_aaa_loginAuthlistEdit functiplanet · wgs-804hpt firmware · CWE-121 | Критическая9,8 | — | 0,5 % | 20 мая 2025 г. |
39Наблюдать | CVE-2024-8450Эксплойта нет | PLANET Technology switch devices - Hard-coded SNMPv1 read-write community stringplanet · gs-4210-24p2s firmware · CWE-798 | Критическая9,8 | — | 0,4 % | 30 сент. 2024 г. |
37Наблюдать | CVE-2025-48826Эксплойта нет | A format string vulnerability exists in the formPingCmd functionality of Planet WGR-500 v1.3411b190912.planet · wgr-500 firmware · CWE-134 | Высокая8,8 | — | 6,9 % | 7 окт. 2025 г. |
36Наблюдать | CVE-2025-54403Эксплойта нет | Multiple OS command injection vulnerabilities exist in the swctrl functionality of Planet WGR-500 v1.3411b190912.planet · wgr-500 firmware · CWE-78 | Высокая8,8 | — | 4,6 % | 7 окт. 2025 г. |
36Наблюдать | CVE-2025-54404Эксплойта нет | Multiple OS command injection vulnerabilities exist in the swctrl functionality of Planet WGR-500 v1.3411b190912.planet · wgr-500 firmware · CWE-78 | Высокая8,8 | — | 4,6 % | 7 окт. 2025 г. |
36Наблюдать | CVE-2025-54405Эксплойта нет | Multiple OS command injection vulnerabilities exist in the formPingCmd functionality of Planet WGR-500 v1.3411b190912.planet · wgr-500 firmware · CWE-78 | Высокая8,8 | — | 4,3 % | 7 окт. 2025 г. |
36Наблюдать | CVE-2025-54406Эксплойта нет | Multiple OS command injection vulnerabilities exist in the formPingCmd functionality of Planet WGR-500 v1.3411b190912.planet · wgr-500 firmware · CWE-78 | Высокая8,8 | — | 4,3 % | 7 окт. 2025 г. |
35Наблюдать | CVE-2025-54399Эксплойта нет | Multiple stack-based buffer overflow vulnerabilities exist in the formPingCmd functionality of Planet WGR-500 v1.3411b190912.planet · wgr-500 firmware · CWE-121 | Высокая8,8 | — | 0,8 % | 7 окт. 2025 г. |
35Наблюдать | CVE-2025-54402Эксплойта нет | Multiple stack-based buffer overflow vulnerabilities exist in the formPingCmd functionality of Planet WGR-500 v1.3411b190912.planet · wgr-500 firmware · CWE-121 | Высокая8,8 | — | 0,8 % | 7 окт. 2025 г. |
35Наблюдать | CVE-2025-54401Эксплойта нет | Multiple stack-based buffer overflow vulnerabilities exist in the formPingCmd functionality of Planet WGR-500 v1.3411b190912.planet · wgr-500 firmware · CWE-121 | Высокая8,8 | — | 0,7 % | 7 окт. 2025 г. |
- CVE-2020-2609740В плане
The firmware of the PLANET Technology Corp NVR-915 and NVR-1615 before 2020-10-28 embeds default credentials for root access via telnet.
КритическаяCVSS 9,8Эксплойта нетEPSS 2 %planet · nvr-915 firmware18 нояб. 2020 г.
- CVE-2023-3355339Наблюдать
An issue in Planet Technologies WDRT-1800AX v1.01-CP21 allows attackers to bypass authentication and escalate privileges to root via manipul
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %planet · wdrt-1800ax firmware7 июн. 2023 г.
- CVE-2025-4489339Наблюдать
FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the ruleNamekey parameter in the web_acl_mgmt_Rules_Apply_post fu
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %planet · wgs-804hpt firmware20 мая 2025 г.
- CVE-2024-845639Наблюдать
PLANET Technology switch devices - Missing Authentication for multiple HTTP routes
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %planet · gs-4210-24p2s firmware30 сент. 2024 г.
- CVE-2025-4488739Наблюдать
FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the radIpkey parameter in the web_radiusSrv_post function.
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %planet · wgs-804hpt firmware20 мая 2025 г.
- CVE-2025-4488339Наблюдать
FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the tacIp parameter in the web_tacplus_serverEdit_post function.
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %planet · wgs-804hpt firmware20 мая 2025 г.
- CVE-2025-4488439Наблюдать
FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the web_sys_infoContact_post function.
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %planet · wgs-804hpt firmware20 мая 2025 г.
- CVE-2025-4488539Наблюдать
FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the remote_ip parameter in the web_snmpv3_remote_engineId_add_pos
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %planet · wgs-804hpt firmware20 мая 2025 г.
- CVE-2025-4488639Наблюдать
FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the byruleEditName parameter in the web_acl_mgmt_Rules_Edit_postc
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %planet · wgs-804hpt firmware20 мая 2025 г.
- CVE-2025-4488839Наблюдать
FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the stp_conf_name parameter in the web_stp_globalSetting_post fun
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %planet · wgs-804hpt firmware20 мая 2025 г.
- CVE-2025-4489039Наблюдать
FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the host_ip parameter in the web_snmp_notifyv3_add_post function.
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %planet · wgs-804hpt firmware20 мая 2025 г.
- CVE-2025-4489139Наблюдать
FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the host_ip parameter in the web_snmp_v3host_add_post function.
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %planet · wgs-804hpt firmware20 мая 2025 г.
- CVE-2025-4489439Наблюдать
FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the radDftParamKey parameter in the web_radiusSrv_dftParam_post f
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %planet · wgs-804hpt firmware20 мая 2025 г.
- CVE-2025-4489639Наблюдать
FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the bindEditMACName parameter in the web_acl_bindEdit_post functi
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %planet · wgs-804hpt firmware20 мая 2025 г.
- CVE-2025-4489739Наблюдать
FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the bytftp_srvip parameter in the web_tool_upgradeManager_post fu
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %planet · wgs-804hpt firmware20 мая 2025 г.
- CVE-2025-4489839Наблюдать
FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the theauthName parameter in the web_aaa_loginAuthlistEdit functi
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %planet · wgs-804hpt firmware20 мая 2025 г.
- CVE-2024-845039Наблюдать
PLANET Technology switch devices - Hard-coded SNMPv1 read-write community string
КритическаяCVSS 9,8Эксплойта нетEPSS 0 %planet · gs-4210-24p2s firmware30 сент. 2024 г.
- CVE-2025-4882637Наблюдать
A format string vulnerability exists in the formPingCmd functionality of Planet WGR-500 v1.3411b190912.
ВысокаяCVSS 8,8Эксплойта нетEPSS 7 %planet · wgr-500 firmware7 окт. 2025 г.
- CVE-2025-5440336Наблюдать
Multiple OS command injection vulnerabilities exist in the swctrl functionality of Planet WGR-500 v1.3411b190912.
ВысокаяCVSS 8,8Эксплойта нетEPSS 5 %planet · wgr-500 firmware7 окт. 2025 г.
- CVE-2025-5440436Наблюдать
Multiple OS command injection vulnerabilities exist in the swctrl functionality of Planet WGR-500 v1.3411b190912.
ВысокаяCVSS 8,8Эксплойта нетEPSS 5 %planet · wgr-500 firmware7 окт. 2025 г.
- CVE-2025-5440536Наблюдать
Multiple OS command injection vulnerabilities exist in the formPingCmd functionality of Planet WGR-500 v1.3411b190912.
ВысокаяCVSS 8,8Эксплойта нетEPSS 4 %planet · wgr-500 firmware7 окт. 2025 г.
- CVE-2025-5440636Наблюдать
Multiple OS command injection vulnerabilities exist in the formPingCmd functionality of Planet WGR-500 v1.3411b190912.
ВысокаяCVSS 8,8Эксплойта нетEPSS 4 %planet · wgr-500 firmware7 окт. 2025 г.
- CVE-2025-5439935Наблюдать
Multiple stack-based buffer overflow vulnerabilities exist in the formPingCmd functionality of Planet WGR-500 v1.3411b190912.
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %planet · wgr-500 firmware7 окт. 2025 г.
- CVE-2025-5440235Наблюдать
Multiple stack-based buffer overflow vulnerabilities exist in the formPingCmd functionality of Planet WGR-500 v1.3411b190912.
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %planet · wgr-500 firmware7 окт. 2025 г.
- CVE-2025-5440135Наблюдать
Multiple stack-based buffer overflow vulnerabilities exist in the formPingCmd functionality of Planet WGR-500 v1.3411b190912.
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %planet · wgr-500 firmware7 окт. 2025 г.