← Back

CVE-2024-28809

nvd nist
Published: Sep 30, 2024Modified: Jun 17, 2026

JSON object

Loading...
8.8
Vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 2.8 / Impact: 5.9
Source: 134c704f-9b21-4f2e-91b3-4a467353bcc0 (Secondary)

Description

An issue was discovered in Infinera hiT 7300 5.60.50. Cleartext storage of sensitive password in firmware update packages allows attackers to access various appliance services via hardcoded credentials.

Affected (1)

1 product
Hit 7300 Firmware
Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version 5.60.50
Running on/withPlatform Versions
Nokia
Hit 7300
All versions

References (1)

Source: cve@mitre.org
Third Party Advisory

Timeline

No history available yet.