HIGHCVESeptember 18, 2026
CVE-2026-81942, PLANET IGS-5225-8P2T4S industrial managed switch V1 and V2 firmware versions bef...
DecipherU Intelligence aggregates cybersecurity developments from government databases, official filings, and authoritative sources. The summary below is written by DecipherU and does not represent the views of the original source. For full details, follow the source link.
Summary
PLANET IGS-5225-8P2T4S industrial managed switch V1 and V2 firmware versions before 1.2412b260707 and 2.2412b260519 contain an OS command injection vulnerability in the web server. User-supplied input is passed to system() without sufficient filtering, allowing a remote authenticated attacker to execute arbitrary commands on the underlying operating system and escalate privileges to root.
Relevant Roles
incident-respondersoc-analystpenetration-tester
For the full cve details, visit the original source.
Read Original Source: nvd.nist.govSource: nvd.nist.gov, September 18, 2026. This summary is DecipherU's original writing. For complete details, follow the source link above. This page is for informational purposes only and does not constitute security advice.
Sources
- NIST National Vulnerability Database (NVD) · Authoritative CVE records and CVSS scoring.
- CISA Advisories · Public-domain US Cybersecurity and Infrastructure Security Agency alerts.
- DecipherU Live Feeds · DecipherU aggregates and curates these cybersecurity intelligence items.
Last verified: September 18, 2026?Report an inaccuracy