PT-2024-10296 · Planet Technology+1 · Planet Wgs-804Hpt+2
Tomer Goldschmidt
·
Published
2024-11-15
·
Updated
2025-01-20
·
CVE-2024-48871
CVSS v3.1
9.8
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
The affected product is susceptible to a stack-based buffer overflow, which can be triggered by an unauthenticated attacker sending a malicious HTTP request. The webserver fails to properly check input size before copying data to the stack, potentially allowing remote code execution.
An exploit for this issue is available, with more information accessible at the provided links: https://t.co/vmA5nU15rh, https://t.co/KLXSw5zYBS, and https://t.co/Gud8m29Hdc.
#cybersecurity #bufferoverflow #remotecodeexecution #webserver #stackbasedbufferoverflow
Fix
Stack Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Planet Wgs-804Hpt
Wgs-804Hpt
Wgs-804Hpt Firmware