PT-2024-10296 · Planet Technology+1 · Planet Wgs-804Hpt+2

·

CVE-2024-48871

·

Published

2024-11-15

·

Updated

2025-01-20

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
The affected product is susceptible to a stack-based buffer overflow, which can be triggered by an unauthenticated attacker sending a malicious HTTP request. The webserver fails to properly check input size before copying data to the stack, potentially allowing remote code execution. An exploit for this issue is available, with more information accessible at the provided links: https://t.co/vmA5nU15rh, https://t.co/KLXSw5zYBS, and https://t.co/Gud8m29Hdc. #cybersecurity #bufferoverflow #remotecodeexecution #webserver #stackbasedbufferoverflow

Fix

Stack Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2025-00721
CVE-2024-48871

Affected Products

Planet Wgs-804Hpt
Wgs-804Hpt
Wgs-804Hpt Firmware