CVE-2025-54400: Buffer Overflow
Multiple stack-based buffer overflow vulnerabilities exist in the formPingCmd functionality of Planet WGR-500 v1.3411b190912. A specially crafted series of HTTP requests can lead to stack-based buffer overflow. An attacker can send a series of HTTP requests to trigger these vulnerabilities.This buffer overflow is related to the counts request parameter for composing the "ping -c <counts> <ipaddr> 2>&1 > %s &" string.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-54400?
CVE-2025-54400 is classified as a high severity vulnerability due to the potential for remote code execution.
How do I fix CVE-2025-54400?
To fix CVE-2025-54400, update to the latest firmware provided by Planet for the WGR-500 router.
What types of attacks are possible with CVE-2025-54400?
CVE-2025-54400 could be exploited through crafted HTTP requests to achieve stack-based buffer overflow.
Which device is affected by CVE-2025-54400?
CVE-2025-54400 affects the Planet WGR-500 router version 1.3411b190912.
How can I detect if CVE-2025-54400 is being exploited?
Detection of CVE-2025-54400 exploitation can be done by monitoring for unusual HTTP request patterns targeting the Planet WGR-500.