CVE Vulnerabilities

CVE-2024-28808

Insecure Storage of Sensitive Information

Published: Sep 30, 2024 | Modified: May 30, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

An issue was discovered in Infinera hiT 7300 5.60.50. Hidden functionality in the web interface allows a remote authenticated attacker to access reserved information by accessing undocumented web applications.

Weakness

The product stores sensitive information without properly limiting read or write access by unauthorized actors.

Affected Software

Name Vendor Start Version End Version
Hit_7300_firmware Nokia 5.60.50 (including) 5.60.50 (including)

References