PT-2024-10296 · Planet Technology+1 · Planet Wgs-804Hpt+2

Tomer Goldschmidt

·

Published

2024-11-15

·

Updated

2025-01-20

·

CVE-2024-48871

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
The affected product is susceptible to a stack-based buffer overflow, which can be triggered by an unauthenticated attacker sending a malicious HTTP request. The webserver fails to properly check input size before copying data to the stack, potentially allowing remote code execution. An exploit for this issue is available, with more information accessible at the provided links: https://t.co/vmA5nU15rh, https://t.co/KLXSw5zYBS, and https://t.co/Gud8m29Hdc. #cybersecurity #bufferoverflow #remotecodeexecution #webserver #stackbasedbufferoverflow

Fix

Stack Overflow

Weakness Enumeration

Related Identifiers

BDU:2025-00721
CVE-2024-48871

Affected Products

Planet Wgs-804Hpt
Wgs-804Hpt
Wgs-804Hpt Firmware