Authentication Vulnerability in Nokia SR Linux
CVE-2025-0980
6.4MEDIUM
What is CVE-2025-0980?
Nokia SR Linux contains an authentication vulnerability that can be exploited to gain unauthorized access to the JSON-RPC service. This security flaw allows attackers to bypass valid authentication requirements due to an invalid validation process, potentially enabling them to perform unauthorized actions within the service. Organizations using affected versions of Nokia SR Linux should implement necessary security updates to mitigate this risk.
Affected Version(s)
SR Linux <23.10.6 < 23.10.6
SR Linux <24.10.2 < 24.10.2
SR Linux 23.10.6 and onwards