An issue was discovered in Infinera hiT 7300 5.60.50. A web application allows a remote privileged attacker to execute applications contained in a specific OS directory via HTTP invocations.
References
Link | Resource |
---|---|
https://www.cvcn.gov.it/cvcn/cve/CVE-2024-28811 |
Configurations
No configuration.
History
25 Nov 2024, 21:15
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 3.3 |
CWE | CWE-94 |
04 Oct 2024, 13:51
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
30 Sep 2024, 19:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-09-30 19:15
Updated : 2024-11-25 21:15
NVD link : CVE-2024-28811
Mitre link : CVE-2024-28811
CVE.ORG link : CVE-2024-28811
JSON object : View
Products Affected
No product.
CWE
CWE-94
Improper Control of Generation of Code ('Code Injection')