Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
nokia vulnerabilities and exploits
(subscribe to this query)
6.5
CVSSv3
CVE-2022-39816
In NOKIA 1350 OMS R14.2, Insufficiently Protected Credentials (cleartext administrator password) occur in the edit configuration page. Exploitation requires an authenticated attacker.
Nokia 1350 Optical Management System 14.2
6.5
CVSSv3
CVE-2021-35487
Nokia Broadcast Message Center up to and including 11.1.0 allows an authenticated user to perform a Boolean Blind SQL Injection attack on the endpoint /owui/block/send-receive-updates (for the Manage Alerts page) via the extIdentifier HTTP POST parameter. This allows an malicious...
Nokia Broadcast Message Center
6.5
CVSSv3
CVE-2021-26597
An issue exists in Nokia NetAct 18A. A remote user, authenticated to the NOKIA NetAct Web Page, can visit the Site Configuration Tool web site section and arbitrarily upload potentially dangerous files without restrictions via the /netact/sct dir parameter in conjunction with the...
Nokia Netact 18a
6.5
CVSSv3
CVE-2019-7386
A Denial of Service issue has been discovered in the Gecko component of KaiOS 2.5 10.05 (platform 48.0.a2) on Nokia 8810 4G devices. When a crafted web page is visited with the internal browser, the Gecko process crashes with a segfault. Successful exploitation could lead to the ...
Kaiostech Kaios 2.5
Nokia 8810 4g Firmware 10.05
6.1
CVSSv3
CVE-2022-41762
An issue exists in NOKIA NFM-T R19.9. Multiple Reflected XSS vulnerabilities exist in the Network Element Manager via any parameter to log.pl, the bench or pid parameter to top.pl, or the id parameter to easy1350.pl.
Nokia Network Functions Manager For Transport 19.9
6.1
CVSSv3
CVE-2022-43675
An issue exists in NOKIA NFM-T R19.9. Reflected XSS in the Network Element Manager exists via /oms1350/pages/otn/cpbLogDisplay via the filename parameter, under /oms1350/pages/otn/connection/E2ERoutingDisplayWithOverLay via the id parameter, and under /oms1350/pages/otn/mainOtn v...
Nokia Network Functions Manager For Transport 19.9
6.1
CVSSv3
CVE-2022-40714
An issue exists in NOKIA 1350OMS R14.2. Reflected XSS exists under different /oms1350/* endpoints.
Nokia 1350 Optical Management System 14.2
6.1
CVSSv3
CVE-2022-40712
An issue exists in NOKIA 1350OMS R14.2. Reflected XSS exists under different /cgi-bin/R14.2* endpoints.
Nokia 1350 Optical Management System 14.2
6.1
CVSSv3
CVE-2022-39814
In NOKIA 1350 OMS R14.2, an Open Redirect vulnerability occurs is the login page via next HTTP GET parameter.
Nokia 1350 Optical Management System 14.2
6.1
CVSSv3
CVE-2014-3809
Cross-site scripting (XSS) vulnerability in the management interface in Alcatel-Lucent 1830 Photonic Service Switch (PSS) 6.0 and previous versions allows remote malicious users to inject arbitrary web script or HTML via the myurl parameter to menu/pop.html.
Nokia 1830 Photonic Service Switch-4 Firmware
Nokia 1830 Photonic Service Switch-16 Firmware
Nokia 1830 Photonic Service Switch-32 Firmware
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
camera
bypass
CVE-2024-3592
CVE-2024-37383
CVE-2024-24919
CVE-2024-27822
CVE-2024-36788
CVE-2024-36789
man-in-the-middle
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
10
NEXT »