CyberSecurity updates
2025-01-30 20:45:54 Pacfic

Critical Flaws in WGS-804HPT Switches Enable RCE - 10d
Read more: ciso2ciso.com

Cybersecurity researchers have uncovered three critical security flaws in Planet Technology's WGS-804HPT industrial switches. These vulnerabilities, detailed in a report by Claroty, can be chained together to achieve pre-authentication remote code execution. The vulnerabilities stem from weaknesses in the dispatcher.cgi interface used for web services, and include an integer underflow flaw (CVE-2024-52558) and two high severity flaws with a CVSS score of 9.8; an operating system command injection flaw (CVE-2024-52320) and a stack-based buffer overflow flaw (CVE-2024-48871)

These switches are widely deployed in building and home automation systems, making the vulnerabilities a significant concern. Successful exploitation could allow attackers to embed malicious shellcode into HTTP requests, enabling them to execute operating system commands and gain control over the network. Planet Technology has released patches addressing these issues with version 1.305b241111, made available on November 15, 2024. Users of these switches are urged to apply the patches immediately to protect against potential attacks.