8.8
CVSSv3

CVE-2022-28863

Published: 24/07/2023 Updated: 02/08/2023
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

An issue exists in Nokia NetAct 22. A remote user, authenticated to the website, can visit the Site Configuration Tool section and arbitrarily upload potentially dangerous files without restrictions via the /netact/sct dir parameter in conjunction with the operation=upload value.

Vulnerable Product Search on Vulmon Subscribe to Product

nokia netact 22.0.0.62