PatchSiren cyber security CVE debrief
CVE-2026-75125 PLANET Technology Corp. CVE debrief
A vulnerability in PLANET GS-4210-16P2S V3 firmware before version 3.441b260626 allows an authenticated attacker to cause a denial of service (DoS) condition in the web management interface. The vulnerability is due to an authenticated null pointer dereference in the /cgi-bin/dispatcher.cgi file, specifically in the web_poe_alive_rmtip_post handler. This handler dereferences the rmtIP parameter without verifying its presence, allowing an attacker to send a crafted request omitting the rmtIP parameter to cause the CGI process to crash.
- Vendor
- PLANET Technology Corp.
- Product
- PLANET GS-4210-16P2S V3
- CVSS
- MEDIUM 6.9
- CISA KEV
- Not listed in stored evidence
- Original CVE published
- 2026-08-28
- Original CVE updated
- 2026-09-08
- Advisory published
- 2026-08-28
- Advisory updated
- 2026-09-08
Who should care
Defenders of PLANET GS-4210-16P2S V3 devices, especially those exposed to the internet or untrusted networks, should assess their exposure and prioritize remediation. Network administrators, security teams, and IT personnel responsible for device management and security should be aware of this vulnerability and take necessary actions to mitigate the risk.
Why it matters
CVE-2026-75125 is a medium-severity vulnerability in PLANET GS-4210-16P2S V3 firmware that can lead to a denial of service condition in the web management interface. Defenders should assess exposure, prioritize remediation, and implement compensating controls to limit the attack surface. The vulnerability requires verification of device firmware versions and potential upgrades to a fixed version.
- Denial of service (DoS) condition in the web management interface, potentially disrupting device management and monitoring.
- Potential for attackers to exploit this vulnerability, especially if devices are exposed to the internet or untrusted networks.
- Need for verification of device firmware versions and potential upgrades to a fixed version.
- Possible impact on network availability and device management, depending on the deployment context and security controls.
Technical summary
The PLANET GS-4210-16P2S V3 firmware before version 3.441b260626 contains an authenticated null pointer dereference vulnerability in the /cgi-bin/dispatcher.cgi file. The web_poe_alive_rmtip_post handler dereferences the rmtIP parameter without verifying its presence, allowing an authenticated attacker to send a crafted request omitting the rmtIP parameter to cause the CGI process to dereference a null pointer and crash, resulting in a denial of service condition in the web management interface.
Defensive priority
Medium priority for defenders of PLANET GS-4210-16P2S V3 devices, especially those exposed to the internet or untrusted networks.
Recommended defensive actions
- Inventory and assess exposure of PLANET GS-4210-16P2S V3 devices, especially those exposed to the internet or untrusted networks.
- Verify if the device firmware is version 3.441b260626 or later, and upgrade if necessary.
- Implement compensating controls, such as network segmentation and access controls, to limit the attack surface.
- Monitor device logs and network traffic for potential exploitation attempts.
- Review relevant monitoring, detection, and logs for exposed assets that need extra review.
- Track exceptions, retest remediated assets, and close the item only after evidence is documented.
- Confirm whether affected product deployments exist in managed environments and assign an owner for follow-up.
Evidence notes
The CVE record and NVD entry provide details on the vulnerability, including its description, CVSS score, and affected product. However, the corpus does not establish versions beyond 3.441b260626, exploitation, impact beyond DoS, or remediation beyond upgrading to a fixed version.
Sources and references
Verified primary and authoritative sources
-
CVE-2026-75125 CVE Program record
Publisher, destination, and source semantics verified
URL: https://www.cve.org/CVERecord?id=CVE-2026-75125
CVE Program - Official CVE Program record with source-provided CVE metadata.
-
CVE-2026-75125 NVD vulnerability detail
Publisher, destination, and source semantics verified
URL: https://nvd.nist.gov/vuln/detail/CVE-2026-75125
NIST National Vulnerability Database - Official NIST NVD detail page and source-specific vulnerability assessment.
Supplemental references
-
Source reference
Unverified legacy reference
URL: https://www.planet.com.tw/en/support/security-advisory/10
-
Source reference
Unverified legacy reference
URL: https://www.vulncheck.com/advisories/planet-gs-4210-16p2s-null-pointer-dereference-dos-via-dispatcher-cgi-web-poe-alive-rmtip-post
Methodology and review provenance
AI-assisted synthesis based on stored public vulnerability evidence. System validation, approval state, and publication status do not by themselves establish human review of this revision. PatchSiren helps prioritize defensive review and does not prove exposure or remediation on any system.