Beveiligingsadvies

CVE-2025-54404

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2025-10-07 13:55:08
Laatst bijgewerkt 2025-11-03 17:45:08
Toegewezen door talos
CVSS-score 8.8
Status PUBLISHED

Beschrijving

Multiple OS command injection vulnerabilities exist in the swctrl functionality of Planet WGR-500 v1.3411b190912. A specially crafted network request can lead to arbitrary command execution. An attacker can send a network request to trigger these vulnerabilities.This command injection is related to the `new_device_name` request parameter.