CVE-2024-28809: High severity infinera hit 7300 vulnerability
An issue was discovered in Infinera hiT 7300 5.60.50. Cleartext storage of sensitive password in firmware update packages allows attackers to access various appliance services via hardcoded credentials.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-28809?
CVE-2024-28809 is considered to have a high severity due to the cleartext storage of sensitive passwords.
How do I fix CVE-2024-28809?
To fix CVE-2024-28809, you should update to the latest firmware version provided by Infinera that addresses this vulnerability.
What are the risks associated with CVE-2024-28809?
The risks associated with CVE-2024-28809 include potential unauthorized access to appliance services due to hardcoded credentials.
Which products are affected by CVE-2024-28809?
CVE-2024-28809 specifically affects the Infinera hiT 7300 model running firmware version 5.60.50.
Is there a workaround for CVE-2024-28809?
Currently, there are no recommended workarounds for CVE-2024-28809 other than applying the firmware update.