CVE-2024-8449

Publication date

2024-09-30 06:45:27

Family

twcert

State

PUBLISHED

Description

Certain switch models from PLANET Technology have a Hard-coded Credential in the password recovering functionality, allowing an unauthenticated attacker to connect to the device via the serial console and use this credential to reset any users password.