PLANET GS-4210-16P2S 在固件版本 3.441b260626 之前的版本中,其 存在一个经过身份验证的空指针解引用漏洞。具体而言, 处理器在解引用 参数时未验证该参数是否存在。经过身份验证的远程攻击者可以发送一个省略 参数的特制请求,导致 CGI 进程解引用空指针并崩溃,从而造成 Web 管理界面的拒绝服务(DoS)。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| PLANET Technology Corp. | PLANET GS-4210-16P2S | < 3.441b260626 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| PLANET Technology Corp. | PLANET GS-4210-16P2S | 0 ~ 3.441b260626 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-75124 | 7.5 HIGH | PLANET GS-4210-16P2S Memory Corruption via dispatcher.cgi _readHttpParam |
| CVE-2026-75121 | 7.2 HIGH | PLANET GS-4210-16P2S Command Injection via dispatcher.cgi web_vlan_membership_edit_dialog_ |
| CVE-2026-75122 | 7.2 HIGH | PLANET GS-4210-16P2S Command Injection via httpuploadcert.cgi |
| CVE-2026-75123 | 7.2 HIGH | PLANET GS-4210-16P2S Command Injection via dispatcher.cgi web_smtp_test_post |
| CVE-2026-75126 | 4.9 MEDIUM | PLANET GS-4210-16P2S Stack Buffer Overflow via dispatcher.cgi Standard Handlers |
| CVE-2026-77217 | 4.9 MEDIUM | PLANET GS-4210-16P2S Stack Buffer Overflow and NULL Pointer Dereference via dispatcher.cgi |
| CVE-2026-77218 | 4.9 MEDIUM | PLANET GS-4210-16P2S Stack Buffer Overflow via dispatcher.cgi Credential Handlers |
No comments yet