File Upload Vulnerability in Nokia NetAct Dashboard
CVE-2021-26597
6.5MEDIUM
What is CVE-2021-26597?
A vulnerability exists in the Nokia NetAct 18A Web Page that allows a remote, authenticated user to upload potentially malicious files without restriction. This is achieved through the Site Configuration Tool section by manipulating the /netact/sct directory parameter combined with the operation=upload value. If exploited, this could lead to critical security breaches, as attackers can introduce harmful files into the system.