Planet Technology Network Products Missing Authentication Vulnerability Allowing Unauthorized Administrator Account Creation

Vulnerability

A vulnerability exists in the WGS-80HPT-V2 and WGS-4215-8T2S products, both through specific versions, allowing an attacker to create an administrator account without needing any existing credentials. This issue arises from a lack of authentication for critical functions, which could be exploited by an unauthenticated attacker to gain administrative privileges.

Impact

Exploitation of this vulnerability could lead to unauthorized administrative access on the affected devices.

Remediation

Planet Technology has released patches for the WGS-804HPT (v2) and WGS-4215-8T2S products. Users are advised to update to the latest version. CISA recommends minimizing network exposure for control system devices, using firewalls to isolate them from business networks, and employing secure remote access methods, such as VPNs.

Added: Sep 1, 2025, 7:22 PM
Updated: Sep 1, 2025, 7:22 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
5.0
exploitability
7.4
remediation
0.0
relevance
0.0
threat
0.0
urgency
2.9
incentive
5.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.