CVE-2021-45896

Published: Dic 27, 2021 Last Modified: Nov 21, 2024 EU-VD ID: EUVD-2021-32611 Aliases: GSD-2021-45896
ExploitDB:
Other exploit source:
Google Dorks:
HIGH 8,8
Attack Vector: network
Attack Complexity: low
Privileges Required: low
User Interaction: none
Scope: unchanged
Confidentiality: high
Integrity: high
Availability: high
MEDIUM 6,0
Access Vector: network
Access Complexity: medium
Authentication: single
Confidentiality: partial
Integrity: partial
Availability: partial

Description

AI Translation Available

Nokia FastMile 3TG00118ABAD52 devices allow privilege escalation by an authenticated user via is_ctc_admin=1 to login_web_app.cgi and use of Import Config File.

EPSS (Exploit Prediction Scoring System)

Trend Analysis

EPSS (Exploit Prediction Scoring System)

Prevede la probabilità di sfruttamento basata su intelligence sulle minacce e sulle caratteristiche della vulnerabilità.

EPSS Score
0,0056
Percentile
0,7th
Updated

EPSS Score Trend (Last 90 Days)

Operating System

Fastmile Firmware by Nokia

cpe:2.3:o:nokia:fastmile_firmware:3tg00118abad52:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
https://eddiez.me/hacking-the-nokia-fastmile/
https://gist.github.com/thedroidgeek/80c379aa43b71015d71da130f85a435a
https://eddiez.me/hacking-the-nokia-fastmile/
https://gist.github.com/thedroidgeek/80c379aa43b71015d71da130f85a435a