High severity8.1NVD Advisory· Published Sep 30, 2024· Updated Jun 17, 2026
CVE-2024-8455
CVE-2024-8455
Description
The swctrl service is used to detect and remotely manage PLANET Technology devices. For certain switch models, the authentication tokens used during communication with this service are encoded user passwords. Due to insufficient strength, unauthorized remote attackers who intercept the packets can directly crack them to obtain plaintext passwords.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5- Range: 0
- cpe:2.3:o:planet:gs-4210-24p2s_firmware:*:*:*:*:*:*:*:*Range: <3.305b240802
- cpe:2.3:o:planet:gs-4210-24pl4c_firmware:*:*:*:*:*:*:*:*Range: <2.305b240719
- cpe:2.3:o:planet:igs-5225-4up1t2s_firmware:-:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
2- www.twcert.org.tw/en/cp-139-8060-f3955-2.htmlnvdThird Party Advisory
- www.twcert.org.tw/tw/cp-132-8059-bde5f-1.htmlnvdThird Party Advisory
News mentions
0No linked articles in our index yet.