Privilege Escalation Vulnerability in Nokia MantaRay NM
CVE-2025-7406

7.8HIGH

Key Information:

Vendor

Nokia

Vendor
CVE Published:
30 June 2026

What is CVE-2025-7406?

Nokia MantaRay NM has a significant vulnerability that allows a local attacker with administrative privileges to escalate their access to full root privileges. This exploits the sudo functionality, granting the attacker root-level permissions over the filesystem. Successful exploitation can lead to unauthorized actions and compromised security of the host system. Although there are temporary mitigation measures, such as restricting specific commands for the affected accounts, the underlying vulnerability poses a serious risk to the integrity of affected installations.

Affected Version(s)

MantaRay NM <NM 25R1-NM < NM 25R1-NM

MantaRay NM ≥NM 25R1-NM

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.