CVE-2024-8451

Certain switch models from PLANET Technology have an SSH service that improperly handles insufficiently authenticated connection requests, allowing unauthorized remote attackers to exploit this weakness to occupy connection slots and prevent legitimate users from accessing the SSH service.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:planet:gs-4210-24p2s_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:planet:gs-4210-24p2s:3.0:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:planet:gs-4210-24pl4c_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:planet:gs-4210-24pl4c:2.0:*:*:*:*:*:*:*

History

No history.

Information

Published : 2024-09-30 07:15

Updated : 2024-10-04 15:09


NVD link : CVE-2024-8451

Mitre link : CVE-2024-8451

CVE.ORG link : CVE-2024-8451


JSON object : View

Products Affected

planet

  • gs-4210-24pl4c_firmware
  • gs-4210-24p2s_firmware
  • gs-4210-24pl4c
  • gs-4210-24p2s
CWE
CWE-280

Improper Handling of Insufficient Permissions or Privileges

CWE-400

Uncontrolled Resource Consumption