CVE-2024-25658
CVSS 3.1 Score 6.5 of 10 (medium)
Details
Summary
CVE-2024-25658 is a vulnerability affecting Infinera TNMS (Transcend Network Management System) Server 19.10.3. This issue permits unauthorized access to SNMP usernames and passwords, which are stored in cleartext in the system. Attackers can exploit this vulnerability by gaining access to the database or exported configuration files. The cleartext storage of sensitive credentials poses a significant risk, as it enables easy compromise of network management systems. Organizations using Infinera TNMS Server 19.10.3 are advised to update their systems as soon as possible to mitigate this threat.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- TN - MS