Reflected XSS Vulnerabilities in NOKIA NFM-T Network Element Manager
CVE-2022-41762

6.1MEDIUM

Key Information:

Vendor
Nokia
Vendor
CVE Published:
25 December 2023

Summary

Multiple reflected XSS vulnerabilities were identified in the NOKIA NFM-T R19.9's Network Element Manager. These vulnerabilities can be exploited through various parameters, including log.pl, top.pl, and easy1350.pl, potentially allowing attackers to execute malicious scripts within the context of the user's browser.

References

CVSS V3.1

Score:
6.1
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.