Stack-Based Buffer Overflow in PLANET IGS-5225-8P2T4S Industrial Managed Switch
CVE-2026-81944

7.7HIGH

What is CVE-2026-81944?

The PLANET IGS-5225-8P2T4S industrial managed switch is affected by a stack-based buffer overflow vulnerability due to inadequate bounds checking in its web server. This flaw allows remote authenticated attackers to exploit the vulnerability, leading to potential denial of service or the execution of arbitrary code on the underlying operating system. Firmware versions prior to 1.2412b260707 for V1 and 2.2412b260519 for V2 are susceptible, making it essential for users to apply security updates promptly.

Affected Version(s)

PLANET IGS-5225-8P2T4S V1 0 < 1.2412b260707

PLANET IGS-5225-8P2T4S V2 0

References

CVSS V4

Score:
7.7
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Ivan Kurnakov, Vladimir Nazarov, Ilya Bubliy, Iliya Rogachev, Arseny Grigorev, Ivan Tarakanov, Aleksey Karimov (Positive Technologies)
Maksim Gruzin
.