PLANET IGS-5225-8P2T4S V1 / PLANET IGS-5225-8P2T4S V2
CVE
Summary
PLANET Technology has identified and addressed five security vulnerabilities affecting the IGS-5225-8P2T4S V1 and V2 Industrial Managed PoE+ Switch. The issues include OS command injection via the web server, active debug functionality that can lead to code execution, two stack-based buffer overflows in the web server, and weak password hashing based on MD5. Depending on the vulnerability, successful exploitation could allow arbitrary command or code execution and root-level access, cause denial of service, or expose a privileged-mode password if an attacker obtains the device configuration file. The CVE records identify V1 firmware versions prior to v1.2412b260707 and V2 firmware versions prior to v2.2412b260519 as affected. PLANET has released fixed firmware v1.2412b260707 for V1 and v2.2412b260519 for V2. Patched firmware has been fully verified and released. The update is available for download from the PLANET official website. All users are strongly recommended to upgrade immediately.
What Are the Risks Associated with These Vulnerabilities?

CVE-2026-81942 (OS Command Injection via Web Server / CWE-78):

PLANET IGS-5225-8P2T4S V1 and V2 firmware versions prior to v1.2412b260707 and v2.2412b260519 contain an OS command injection vulnerability in the web server. User-supplied input is passed to system() without sufficient filtering, allowing a remote authenticated attacker to execute arbitrary commands on the underlying operating system and escalate privileges to root. CVSS v4.0: 8.7 (High), CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N. CVSS v3.1: 8.8 (High), CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H.

CVE-2026-81943 (Debug Mode RCE / CWE-489):

PLANET IGS-5225-8P2T4S V1 and V2 firmware versions prior to v1.2412b260707 and v2.2412b260519 contain active debug functionality in the embedded software. An attacker with privileged access to the device can enable this debug mode to execute arbitrary code on the underlying operating system and gain root-level access. CVSS v4.0: 8.4 (High), CVSS:4.0/AV:L/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N. CVSS v3.1: 6.7 (Medium), CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H.

CVE-2026-81944 (Stack-Based Buffer Overflow via Web Server / CWE-121):

PLANET IGS-5225-8P2T4S V1 and V2 firmware versions prior to v1.2412b260707 and v2.2412b260519 contain a stack-based buffer overflow in the web server. Insufficient bounds checking on data copied into a stack buffer allows a remote authenticated attacker to cause a denial of service or potentially execute arbitrary code on the underlying operating system. CVSS v4.0: 7.7 (High), CVSS:4.0/AV:N/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N. CVSS v3.1: 7.5 (High), CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H.

CVE-2026-81945 (Admin Stack-Based Buffer Overflow via Web Server / CWE-121):

PLANET IGS-5225-8P2T4S V1 and V2 firmware versions prior to v1.2412b260707 and v2.2412b260519 contain a stack-based buffer overflow in the web server. Insufficient bounds checking on data copied into a stack buffer allows a remote administrator to cause a denial of service or potentially execute arbitrary code on the underlying operating system. CVSS v4.0: 7.5 (High), CVSS:4.0/AV:N/AC:H/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N. CVSS v3.1: 6.6 (Medium), CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H.

CVE-2026-81946 (Weak Password Hashing via MD5 Algorithm):

PLANET IGS-5225-8P2T4S V1 and V2 firmware versions prior to v1.2412b260707 and v2.2412b260519 use MD5-based password hashing, a cryptographic algorithm with known weaknesses. An attacker who obtains the device configuration file can recover the privileged-mode access password. The fixed firmware replaces the affected HMAC-MD5 mechanism with HMAC-SHA-256. CVSS v4.0: 6.7 (Medium), CVSS:4.0/AV:L/AC:L/AT:N/PR:H/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N. CVSS v3.1: 4.4 (Medium), CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N.

Which Versions Are Affected and What Should You Do?
After a comprehensive investigation, we have identified the impacted product versions and released updated firmware to mitigate These Vulnerabilities. The affected products and available patches are listed in the table below:
Product Series Affected Version Patch Availability
IGS-5225-8P2T4S V1 Versions prior to v1.2412b260707 (v1.440b210519 confirmed affected) v1.2412b260707
IGS-5225-8P2T4S V2 Versions prior to v2.2412b260519 (v2.2412b260203 confirmed affected) v2.2412b260519
How to Get Assistance
If you have any questions or require assistance, please contact PLANET's technical support team or reach out to your PLANET distributor. We are here to provide additional guidance and support.
Acknowledgment
We would like to express our appreciation to Ivan Kurnakov, Vladimir Nazarov, Ilya Bubliy, Iliya Rogachev, Arseny Grigorev, Ivan Tarakanov, and Aleksey Karimov (Positive Technologies), and Maksim Gruzin (Independent) for reporting these issues.
Revision History
[2026-09-18]: Initial Version
Contact Us