Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-25659


In Infinera TNMS (Transcend Network Management System) 19.10.3, an insecure default configuration of the internal SFTP server on Linux servers allows remote attacker to access files and directories outside the SFTP user home directory.


Published

2024-10-01T16:15:09.363

Last Modified

2025-07-03T14:36:51.743

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 7.2 (HIGH)

Weaknesses
  • Type: Secondary
    CWE-22

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application nokia transcend_network_management_system 19.10.3 Yes

References