PT-2025-41001 · Unknown · Planet Wgr-500

Francesco Benvenuto

·

Published

2025-10-07

·

Updated

2025-10-07

·

CVE-2025-54400

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Planet WGR-500 version 1.3411b190912
Description Several stack-based buffer overflow issues are present in the formPingCmd functionality. An attacker can exploit these by sending specially crafted HTTP requests. The buffer overflow is related to the counts request parameter used in constructing the "ping -c <counts> <ipaddr> 2>&1 > %s &" string.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Stack Overflow

Weakness Enumeration

Related Identifiers

CVE-2025-54400

Affected Products

Planet Wgr-500