Podatność CVE-2024-8459


Publikacja: 2024-09-30

Opis:
Certain switch models from PLANET Technology store SNMPv3 users' passwords in plaintext within the configuration files, allowing remote attackers with administrator privileges to read the file and obtain the credentials.

Typ:

CWE-312

(Cleartext Storage of Sensitive Information)

 Referencje:
https://www.twcert.org.tw/tw/cp-132-8067-2fc50-1.html
https://www.twcert.org.tw/en/cp-139-8068-8aaa5-2.html

Copyright 2024, cxsecurity.com

 

Back to Top