CVE-2024-8459

EUVD-2024-49193
Certain switch models from PLANET Technology store SNMPv3 users' passwords in plaintext within the configuration files, allowing remote attackers with administrator privileges to read the file and obtain the credentials.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.2 HIGH
NETWORK
LOW
HIGH
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 30%
Affected Products (NVD)
VendorProductVersion
planetgs-4210-24p2s_firmware
𝑥
< 3.305b240802
planetgs-4210-24pl4c_firmware
𝑥
< 2.305b240719
𝑥
= Vulnerable software versions
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
VendorProductVersionSource
planet_technology_corpgs-4210-24pl4c_hardware_2.0
𝑥
< 2.305b240719
ADP
planet_technology_corpgs-4210-24pl4c_hardware_3.0
𝑥
< 3.305b240802
ADP