CVE-2025-46271: Planet Technology Network Products OS Command Injection
UNI-NMS-Lite is vulnerable to a command injection attack that could allow an unauthenticated attacker to read or manipulate device data.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-46271?
CVE-2025-46271 is classified as a critical vulnerability due to the potential for unauthorized command injection that can compromise device data.
How do I fix CVE-2025-46271?
To fix CVE-2025-46271, you should update to the latest versions of affected Planet Technology products as recommended by the vendor.
Which products are affected by CVE-2025-46271?
CVE-2025-46271 affects Planet Technology UNI-NMS-Lite versions 1.0b211018 and prior, as well as various NMS-500, NMS-1000V, WGS-804HPT-V2, and WGS-4215-8T2S versions.
Can CVE-2025-46271 be exploited remotely?
Yes, CVE-2025-46271 can be exploited by unauthenticated attackers remotely, allowing potential data manipulation.
What type of attack is associated with CVE-2025-46271?
CVE-2025-46271 is associated with a command injection attack, which can lead to unauthorized access and data compromise.