Vulnerabilities > Nokia

DATE CVE VULNERABILITY TITLE RISK
2022-06-16 CVE-2021-41487 SQL Injection vulnerability in Nokia Vitalsuite 2020
NOKIA VitalSuite SPM 2020 is affected by SQL injection through UserName'.
network
low complexity
nokia CWE-89
7.5
2022-06-14 CVE-2022-30903 Cross-site Scripting vulnerability in Nokia G-2425G-A Firmware 3Fe49362Ijhk42
Nokia "G-2425G-A" Bharti Airtel Routers Hardware version "3FE48299DEAA" Software Version "3FE49362IJHK42" is vulnerable to Cross-Site Scripting (XSS) via the admin->Maintenance>Device Management.
network
nokia CWE-79
3.5
2022-05-25 CVE-2021-35487 SQL Injection vulnerability in Nokia Broadcast Message Center
Nokia Broadcast Message Center through 11.1.0 allows an authenticated user to perform a Boolean Blind SQL Injection attack on the endpoint /owui/block/send-receive-updates (for the Manage Alerts page) via the extIdentifier HTTP POST parameter.
network
low complexity
nokia CWE-89
4.0
2022-02-11 CVE-2021-31932 Improper Authentication vulnerability in Nokia BTS TRS web Console Ftmw20Fp22019.08.160010
Nokia BTS TRS web console FTM_W20_FP2_2019.08.16_0010 allows Authentication Bypass.
network
low complexity
nokia CWE-287
7.5
2021-12-27 CVE-2021-45896 Improper Privilege Management vulnerability in Nokia Fastmile Firmware 3Tg00118Abad52
Nokia FastMile 3TG00118ABAD52 devices allow privilege escalation by an authenticated user via is_ctc_admin=1 to login_web_app.cgi and use of Import Config File.
network
nokia CWE-269
6.0
2021-09-20 CVE-2021-32287 Out-of-bounds Write vulnerability in Nokia Heif
An issue was discovered in heif through v3.6.2.
network
nokia CWE-787
6.8
2021-09-20 CVE-2021-32288 Out-of-bounds Write vulnerability in Nokia Heif
An issue was discovered in heif through v3.6.2.
network
nokia CWE-787
6.8
2021-09-20 CVE-2021-32289 NULL Pointer Dereference vulnerability in Nokia Heif
An issue was discovered in heif through through v3.6.2.
network
nokia CWE-476
4.3
2021-04-02 CVE-2021-30003 Cross-site Scripting vulnerability in Nokia G-120W-F Firmware 3Fe46606Agab91
An issue was discovered on Nokia G-120W-F 3FE46606AGAB91 devices.
network
nokia CWE-79
3.5
2021-03-25 CVE-2021-26597 Unrestricted Upload of File with Dangerous Type vulnerability in Nokia Netact 18A
An issue was discovered in Nokia NetAct 18A.
network
low complexity
nokia CWE-434
4.0