In Infinera TNMS (Transcend Network Management System) 19.10.3, cleartext storage of sensitive information in memory of the desktop application TNMS Client allows guest OS administrators to obtain various users' passwords by reading memory dumps of the desktop application.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://www.cvcn.gov.it/cvcn/cve/CVE-2024-25661 |
History
Tue, 01 Oct 2024 15:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Infinera
Infinera tnms |
|
Weaknesses | CWE-312 | |
CPEs | cpe:2.3:a:infinera:tnms:19.10.3:*:*:*:*:*:*:* | |
Vendors & Products |
Infinera
Infinera tnms |
|
Metrics |
cvssV3_1
|
Tue, 01 Oct 2024 15:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | In Infinera TNMS (Transcend Network Management System) 19.10.3, cleartext storage of sensitive information in memory of the desktop application TNMS Client allows guest OS administrators to obtain various users' passwords by reading memory dumps of the desktop application. | |
References |
|
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2024-10-01T00:00:00
Updated: 2024-10-01T15:10:16.501Z
Reserved: 2024-02-09T00:00:00
Link: CVE-2024-25661
Vulnrichment
Updated: 2024-10-01T15:10:10.896Z
NVD
Status : Awaiting Analysis
Published: 2024-10-01T15:15:07.740
Modified: 2024-10-04T13:51:25.567
Link: CVE-2024-25661
Redhat
No data.