{"id":"CVE-2026-81946","published":"2026-09-18T16:17:11.560","lastModified":"2026-09-22T20:43:58.793","description":"PLANET IGS-5225-8P2T4S industrial managed switch V1 and V2 firmware versions before 1.2412b260707 and 2.2412b260519 use MD5-based password hashing, a cryptographic algorithm with known weaknesses. An attacker who obtains the device configuration file can recover the privileged-mode access password.","cvssScore":4.4,"cvssSeverity":"MEDIUM","cvssVector":"CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N","cwes":["CWE-121"],"vendors":[],"products":[],"references":[{"url":"https://www.planet.com.tw/en/support/security-advisory/11","tags":[]},{"url":"https://www.vulncheck.com/advisories/planet-igs-5225-8p2t4s-v1-v2-weak-password-hashing-via-md5-algorithm","tags":[]}],"exploitRefs":[],"hasPoc":false,"ai":null}