PT-2025-22294 · Unknown · Fw-Wgs-804Hpt

John Doe

·

Published

2025-04-20

·

Updated

2025-11-24

·

CVE-2025-44893

CVSS v2.0

10

Critical

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions PLANET Technology FW-WGS-804HPT version 1.305b241111
Description The vulnerability concerns a stack overflow in the web acl mgmt Rules Apply post function when processing the ruleNamekey parameter. Exploitation may allow a remote attacker to impact the confidentiality, integrity, and availability of information. The issue affects devices running the vulnerable software. The vulnerable parameter is ruleNamekey and the affected function is web acl mgmt Rules Apply post.
Recommendations Update to a newer version that contains a fix for this vulnerability. As a temporary workaround, consider restricting access to the web acl mgmt Rules Apply post function until a patch is available.

Exploit

Fix

Stack Overflow

Weakness Enumeration

Related Identifiers

BDU:2025-05944
CVE-2025-44893

Affected Products

Fw-Wgs-804Hpt