CVE-2024-25658: Medium severity infinera tnms vulnerability
Cleartext storage of passwords in Infinera TNMS (Transcend Network Management System) Server 19.10.3 allows attackers (with access to the database or exported configuration files) to obtain SNMP users' usernames and passwords in cleartext.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-25658?
CVE-2024-25658 is considered a critical vulnerability due to its potential for exposing sensitive credentials.
How do I fix CVE-2024-25658?
To fix CVE-2024-25658, ensure that passwords are stored securely using strong encryption methods.
What impact does CVE-2024-25658 have on my system?
CVE-2024-25658 allows attackers with database access to view sensitive SNMP usernames and passwords in cleartext.
Who is affected by CVE-2024-25658?
CVE-2024-25658 affects users of Infinera TNMS Server version 19.10.3 and possibly other versions that exhibit the same vulnerability.
Is CVE-2024-25658 actively exploited?
As of the latest information, there is no public indication that CVE-2024-25658 is actively being exploited.