CVE-2024-28811: Code Injection
An issue was discovered in Infinera hiT 7300 5.60.50. A web application allows a remote privileged attacker to execute applications contained in a specific OS directory via HTTP invocations.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-28811?
CVE-2024-28811 is classified as a critical vulnerability due to its potential for remote code execution by privileged attackers.
How do I fix CVE-2024-28811?
To mitigate CVE-2024-28811, apply the latest security patches provided by Infinera for the hiT 7300 model.
Who is affected by CVE-2024-28811?
CVE-2024-28811 affects users of Infinera hiT 7300 running version 5.60.50.
What type of vulnerability is CVE-2024-28811?
CVE-2024-28811 is a remote code execution vulnerability that allows attackers to execute arbitrary applications through a web interface.
Can CVE-2024-28811 be exploited remotely?
Yes, CVE-2024-28811 can be exploited remotely via HTTP invocations, granting attackers access to execute applications on the affected system.