Certain models of Industrial Cellular Gateway developed by Planet Technology have an OS Command Injection vulnerability, allowing unauthenticated remote attackers to inject arbitrary OS commands and execute them on the device.
History

Tue, 23 Sep 2025 04:45:00 +0000

Type Values Removed Values Added
Description The N-Reporter, N-Cloud, and N-Probe developed by N-Partner has an OS Command Injection vulnerability, allowing authenticated remote attackers to inject arbitrary OS commands and execute them on the server. Certain models of Industrial Cellular Gateway developed by Planet Technology have an OS Command Injection vulnerability, allowing unauthenticated remote attackers to inject arbitrary OS commands and execute them on the device.

Thu, 18 Sep 2025 12:45:00 +0000

Type Values Removed Values Added
First Time appeared N-partner
N-partner n-cloud
N-partner n-probe
N-partner n-reporter
Planet
Planet planet
Vendors & Products N-partner
N-partner n-cloud
N-partner n-probe
N-partner n-reporter
Planet
Planet planet

Wed, 17 Sep 2025 13:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Wed, 17 Sep 2025 10:30:00 +0000

Type Values Removed Values Added
References

Wed, 17 Sep 2025 07:15:00 +0000

Type Values Removed Values Added
Description The N-Reporter, N-Cloud, and N-Probe developed by N-Partner has an OS Command Injection vulnerability, allowing authenticated remote attackers to inject arbitrary OS commands and execute them on the server.
Title Planet Technology|Industrial Cellular Gateway - OS Command Injection
Weaknesses CWE-78
References
Metrics cvssV3_1

{'score': 9.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'}

cvssV4_0

{'score': 9.3, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: twcert

Published:

Updated: 2025-09-23T04:26:58.640Z

Reserved: 2025-09-04T07:06:17.436Z

Link: CVE-2025-9972

cve-icon Vulnrichment

Updated: 2025-09-17T12:56:25.874Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2025-09-17T07:15:43.617

Modified: 2025-09-23T05:15:36.150

Link: CVE-2025-9972

cve-icon Redhat

No data.