Vulnerability index

Browse CVEs

36 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Wgr 500 Firmware HIGH 8.8
CVE-2025-54403

Multiple OS command injection vulnerabilities exist in the swctrl functionality of Planet WGR-500 v1.3411b190912. A specially crafted network request…

No fix yet
Fix from $1,950 2025-10-07
Wgr 500 Firmware HIGH 8.8
CVE-2025-54404

Multiple OS command injection vulnerabilities exist in the swctrl functionality of Planet WGR-500 v1.3411b190912. A specially crafted network request…

No fix yet
Fix from $1,950 2025-10-07
Wgr 500 Firmware HIGH 8.8
CVE-2025-54405

Multiple OS command injection vulnerabilities exist in the formPingCmd functionality of Planet WGR-500 v1.3411b190912. A specially crafted series of …

No fix yet
Fix from $1,950 2025-10-07
Wgr 500 Firmware HIGH 8.8
CVE-2025-54406

Multiple OS command injection vulnerabilities exist in the formPingCmd functionality of Planet WGR-500 v1.3411b190912. A specially crafted series of …

No fix yet
Fix from $1,950 2025-10-07
Wgr 500 Firmware HIGH 8.8
CVE-2025-54399

Multiple stack-based buffer overflow vulnerabilities exist in the formPingCmd functionality of Planet WGR-500 v1.3411b190912. A specially crafted ser…

No fix yet
Fix from $1,950 2025-10-07
Wgr 500 Firmware HIGH 8.8
CVE-2025-54400

Multiple stack-based buffer overflow vulnerabilities exist in the formPingCmd functionality of Planet WGR-500 v1.3411b190912. A specially crafted ser…

No fix yet
Fix from $1,950 2025-10-07
Wgr 500 Firmware HIGH 8.8
CVE-2025-54401

Multiple stack-based buffer overflow vulnerabilities exist in the formPingCmd functionality of Planet WGR-500 v1.3411b190912. A specially crafted ser…

No fix yet
Fix from $1,950 2025-10-07
Wgr 500 Firmware HIGH 8.8
CVE-2025-54402

Multiple stack-based buffer overflow vulnerabilities exist in the formPingCmd functionality of Planet WGR-500 v1.3411b190912. A specially crafted ser…

No fix yet
Fix from $1,950 2025-10-07
Wgr 500 Firmware HIGH 8.8
CVE-2025-48826

A format string vulnerability exists in the formPingCmd functionality of Planet WGR-500 v1.3411b190912. A specially crafted series of HTTP requests c…

No fix yet
Fix from $1,950 2025-10-07
Wgs 804hpt Firmware MEDIUM 6.5
CVE-2025-44892

FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the ownekey parameter in the web_rmon_alarm_post_rmon_alarm function.

No fix yet
Fix from $1,600 2025-05-21
Wgs 804hpt Firmware MEDIUM 6.5
CVE-2025-44895

FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the ipv4Aclkey parameter in the web_acl_ipv4BasedAceAdd function.

No fix yet
Fix from $1,600 2025-05-21
Wgs 804hpt Firmware CRITICAL 9.8
CVE-2025-44883

FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the tacIp parameter in the web_tacplus_serverEdit_post function.

No fix yet
Fix from $2,300 2025-05-20
Wgs 804hpt Firmware CRITICAL 9.8
CVE-2025-44891

FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the host_ip parameter in the web_snmp_v3host_add_post function.

No fix yet
Fix from $2,300 2025-05-20
Wgs 804hpt Firmware CRITICAL 9.8
CVE-2025-44894

FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the radDftParamKey parameter in the web_radiusSrv_dftParam_post function.

No fix yet
Fix from $2,300 2025-05-20
Wgs 804hpt Firmware CRITICAL 9.8
CVE-2025-44896

FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the bindEditMACName parameter in the web_acl_bindEdit_post function.

No fix yet
Fix from $2,300 2025-05-20
Wgs 804hpt Firmware CRITICAL 9.8
CVE-2025-44897

FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the bytftp_srvip parameter in the web_tool_upgradeManager_post function.

No fix yet
Fix from $2,300 2025-05-20
Wgs 804hpt Firmware CRITICAL 9.8
CVE-2025-44898

FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the theauthName parameter in the web_aaa_loginAuthlistEdit function.

No fix yet
Fix from $2,300 2025-05-20
Wgs 804hpt Firmware CRITICAL 9.8
CVE-2025-44885

FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the remote_ip parameter in the web_snmpv3_remote_engineId_add_post functio…

No fix yet
Fix from $2,300 2025-05-20
Wgs 804hpt Firmware CRITICAL 9.8
CVE-2025-44886

FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the byruleEditName parameter in the web_acl_mgmt_Rules_Edit_postcontains f…

No fix yet
Fix from $2,300 2025-05-20
Wgs 804hpt Firmware CRITICAL 9.8
CVE-2025-44887

FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the radIpkey parameter in the web_radiusSrv_post function.

No fix yet
Fix from $2,300 2025-05-20
Wgs 804hpt Firmware CRITICAL 9.8
CVE-2025-44888

FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the stp_conf_name parameter in the web_stp_globalSetting_post function.

No fix yet
Fix from $2,300 2025-05-20
Wgs 804hpt Firmware CRITICAL 9.8
CVE-2025-44890

FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the host_ip parameter in the web_snmp_notifyv3_add_post function.

No fix yet
Fix from $2,300 2025-05-20
Wgs 804hpt Firmware CRITICAL 9.8
CVE-2025-44893

FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the ruleNamekey parameter in the web_acl_mgmt_Rules_Apply_post function.

No fix yet
Fix from $2,300 2025-05-20
Wgs 804hpt Firmware CRITICAL 9.8
CVE-2025-44884

FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the web_sys_infoContact_post function.

No fix yet
Fix from $2,300 2025-05-20
Gs 4210 24p2s Firmware HIGH 8.8
CVE-2024-8458

Certain switch models from PLANET Technology have a web application that is vulnerable to Cross-Site Request Forgery (CSRF). An unauthenticated remot…

Fix: 2.305b240719 / 3.305b240802+
Fix from $1,950 2024-09-30
Gs 4210 24p2s Firmware CRITICAL 9.8
CVE-2024-8456

Certain switch models from PLANET Technology lack proper access control in firmware upload and download functionality, allowing unauthenticated remot…

Fix: 2.305b240719 / 3.305b240802+
Fix from $2,300 2024-09-30
Gs 4210 24p2s Firmware HIGH 7.5
CVE-2024-8454

The swctrl service is used to detect and remotely manage PLANET Technology devices. Certain switch models have a Denial-of-Service vulnerability in t…

Fix: 2.305b240719 / 3.305b240802+
Fix from $1,950 2024-09-30
Gs 4210 24p2s Firmware MEDIUM 5.9
CVE-2024-8455

The swctrl service is used to detect and remotely manage PLANET Technology devices. For certain switch models, the authentication tokens used during …

Fix: 2.305b240719 / 3.305b240802+
Fix from $1,600 2024-09-30
Gs 4210 24p2s Firmware CRITICAL 9.8
CVE-2024-8450

Certain switch models from PLANET Technology have a Hard-coded community string in the SNMPv1 service, allowing unauthorized remote attackers to use …

Fix: 2.305b240719 / 3.305b240802+
Fix from $2,300 2024-09-30
Gs 4210 24p2s Firmware HIGH 7.5
CVE-2024-8451

Certain switch models from PLANET Technology have an SSH service that improperly handles insufficiently authenticated connection requests, allowing u…

Fix: 2.305b240719 / 3.305b240802+
Fix from $1,950 2024-09-30