9.8
CVSSv3

CVE-2021-31932

Published: 11/02/2022 Updated: 12/07/2022
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Nokia BTS TRS web console FTM_W20_FP2_2019.08.16_0010 allows Authentication Bypass. A malicious unauthenticated user can get access to all the functionalities exposed via the web panel, circumventing the authentication process, by using URL encoding for the . (dot) character.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

nokia bts trs web console ftm_w20_fp2_2019.08.16_0010

Exploits

The TRS web console allows an authenticated user to remotely manage the BTS and its configuration Analysis discovered an authentication bypass vulnerability in the web management console BTS TRS web console version FTM_W20_FP2_20190816_0010 is affected ...