Medium severity4.9NVD Advisory· Published Sep 30, 2024· Updated Jun 17, 2026
CVE-2024-8453
CVE-2024-8453
Description
Certain switch models from PLANET Technology use an insecure hashing function to hash user passwords without being salted. Remote attackers with administrator privileges can read configuration files to obtain the hash values, and potentially crack them to retrieve the plaintext passwords.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- PLANET Technology/GS-4210-24P2S hardware 3.0v5Range: 0
- PLANET Technology/GS-4210-24PL4C hardware 2.0v5Range: 0
Patches
Vulnerability mechanics
References
2- www.twcert.org.tw/en/cp-139-8056-09688-2.htmlnvdThird Party Advisory
- www.twcert.org.tw/tw/cp-132-8055-2c361-1.htmlnvdThird Party Advisory
News mentions
0No linked articles in our index yet.