CVE-2024-8451

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
30/09/2024
Last modified:
04/10/2024

Description

Certain switch models from PLANET Technology have an SSH service that improperly handles insufficiently authenticated connection requests, allowing unauthorized remote attackers to exploit this weakness to occupy connection slots and prevent legitimate users from accessing the SSH service.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:planet:gs-4210-24p2s_firmware:*:*:*:*:*:*:*:* 3.305b240802 (excluding)
cpe:2.3:h:planet:gs-4210-24p2s:3.0:*:*:*:*:*:*:*
cpe:2.3:o:planet:gs-4210-24pl4c_firmware:*:*:*:*:*:*:*:* 2.305b240719 (excluding)
cpe:2.3:h:planet:gs-4210-24pl4c:2.0:*:*:*:*:*:*:*