In NOKIA NFM-T R19.9, an OS Command Injection vulnerability occurs in /cgi-bin/R19.9/log.pl of the VM Manager WebUI via the cmd HTTP GET parameter. This allows authenticated users to execute commands, with root privileges, on the operating system.
Project Subscriptions
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://www.gruppotim.it/it/footer/red-team.html |
|
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-03T12:07:42.885Z
Reserved: 2022-09-05T00:00:00
Link: CVE-2022-39818
No data.
Status : Modified
Published: 2023-12-25T06:15:07.880
Modified: 2024-11-21T07:18:19.153
Link: CVE-2022-39818
No data.
OpenCVE Enrichment
No data.
Weaknesses