PatchSiren

PatchSiren cyber security CVE debrief

CVE-2026-75125 PLANET Technology Corp. CVE debrief

A vulnerability in PLANET GS-4210-16P2S V3 firmware before version 3.441b260626 allows an authenticated attacker to cause a denial of service (DoS) condition in the web management interface. The vulnerability is due to an authenticated null pointer dereference in the /cgi-bin/dispatcher.cgi file, specifically in the web_poe_alive_rmtip_post handler. This handler dereferences the rmtIP parameter without verifying its presence, allowing an attacker to send a crafted request omitting the rmtIP parameter to cause the CGI process to crash.

Vendor
PLANET Technology Corp.
Product
PLANET GS-4210-16P2S V3
CVSS
MEDIUM 6.9
CISA KEV
Not listed in stored evidence
Original CVE published
2026-08-28
Original CVE updated
2026-09-08
Advisory published
2026-08-28
Advisory updated
2026-09-08

Who should care

Defenders of PLANET GS-4210-16P2S V3 devices, especially those exposed to the internet or untrusted networks, should assess their exposure and prioritize remediation. Network administrators, security teams, and IT personnel responsible for device management and security should be aware of this vulnerability and take necessary actions to mitigate the risk.

Why it matters

CVE-2026-75125 is a medium-severity vulnerability in PLANET GS-4210-16P2S V3 firmware that can lead to a denial of service condition in the web management interface. Defenders should assess exposure, prioritize remediation, and implement compensating controls to limit the attack surface. The vulnerability requires verification of device firmware versions and potential upgrades to a fixed version.

  • Denial of service (DoS) condition in the web management interface, potentially disrupting device management and monitoring.
  • Potential for attackers to exploit this vulnerability, especially if devices are exposed to the internet or untrusted networks.
  • Need for verification of device firmware versions and potential upgrades to a fixed version.
  • Possible impact on network availability and device management, depending on the deployment context and security controls.

Technical summary

The PLANET GS-4210-16P2S V3 firmware before version 3.441b260626 contains an authenticated null pointer dereference vulnerability in the /cgi-bin/dispatcher.cgi file. The web_poe_alive_rmtip_post handler dereferences the rmtIP parameter without verifying its presence, allowing an authenticated attacker to send a crafted request omitting the rmtIP parameter to cause the CGI process to dereference a null pointer and crash, resulting in a denial of service condition in the web management interface.

Defensive priority

Medium priority for defenders of PLANET GS-4210-16P2S V3 devices, especially those exposed to the internet or untrusted networks.

Recommended defensive actions

  • Inventory and assess exposure of PLANET GS-4210-16P2S V3 devices, especially those exposed to the internet or untrusted networks.
  • Verify if the device firmware is version 3.441b260626 or later, and upgrade if necessary.
  • Implement compensating controls, such as network segmentation and access controls, to limit the attack surface.
  • Monitor device logs and network traffic for potential exploitation attempts.
  • Review relevant monitoring, detection, and logs for exposed assets that need extra review.
  • Track exceptions, retest remediated assets, and close the item only after evidence is documented.
  • Confirm whether affected product deployments exist in managed environments and assign an owner for follow-up.

Evidence notes

The CVE record and NVD entry provide details on the vulnerability, including its description, CVSS score, and affected product. However, the corpus does not establish versions beyond 3.441b260626, exploitation, impact beyond DoS, or remediation beyond upgrading to a fixed version.

Sources and references

Verified primary and authoritative sources

  • CVE-2026-75125 CVE Program record

    Publisher, destination, and source semantics verified

    URL: https://www.cve.org/CVERecord?id=CVE-2026-75125

    CVE Program - Official CVE Program record with source-provided CVE metadata.

  • CVE-2026-75125 NVD vulnerability detail

    Publisher, destination, and source semantics verified

    URL: https://nvd.nist.gov/vuln/detail/CVE-2026-75125

    NIST National Vulnerability Database - Official NIST NVD detail page and source-specific vulnerability assessment.

Supplemental references

Methodology and review provenance

AI-assisted synthesis based on stored public vulnerability evidence. System validation, approval state, and publication status do not by themselves establish human review of this revision. PatchSiren helps prioritize defensive review and does not prove exposure or remediation on any system.