CVE-2024-28812: High severity infinera hit 7300 vulnerability
An issue was discovered in Infinera hiT 7300 5.60.50. A hidden SSH service (on the local management network interface) with hardcoded credentials allows attackers to access the appliance operating system (with highest privileges) via an SSH connection.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-28812?
CVE-2024-28812 is a critical severity vulnerability due to the presence of a hidden SSH service with hardcoded credentials.
How do I fix CVE-2024-28812?
To mitigate CVE-2024-28812, you should disable the hidden SSH service or change the hardcoded credentials immediately.
What are the potential impacts of CVE-2024-28812?
CVE-2024-28812 can allow unauthorized attackers to gain the highest privileges on the appliance's operating system.
Which products are affected by CVE-2024-28812?
CVE-2024-28812 affects the Infinera hiT 7300 running version 5.60.50.
Is there a patch available for CVE-2024-28812?
As of now, check Infinera's official communications for any available patches or updates addressing CVE-2024-28812.