Security Advisory

CVE-2024-28146

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-12-12 13:49:29
Last updated 2025-11-03 21:54:32
Assigner SEC-VLab
State PUBLISHED

Description

The application uses several hard-coded credentials to encrypt config files during backup, to decrypt the new firmware during an update and some passwords allow a direct connection to the database server of the affected device.