Fiche vulnérabilité
CVE-2024-8452 : faille élevée planet gs-4210-24p2s firmware (CVSS 7.5)
Description
Certain switch models from PLANET Technology only support obsolete algorithms for authentication protocol and encryption protocol in the SNMPv3 service, allowing attackers to obtain plaintext SNMPv3 credentials potentially.
En bref
- Sévérité
- Élevée (CVSS 7.5)
- Vecteur CVSS
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
- Exploitation active
- Non signalée par la CISA
- Publication
- 30 sept. 2024
- Dernière mise à jour
- 17 juin 2026
Produits concernés
- planet gs-4210-24p2s firmware
- planet gs-4210-24pl4c firmware