nokia impact CVE Vulnerabilities (7)

CVEs: 7 CPE versions: View versions table

Summary

This page lists publicly disclosed CVE vulnerabilities affecting nokia impact (linked via NVD CPE). Each row includes severity scores, summaries, and publication dates to help identify and analyze security issues.

Showing 17 of 7 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2021-35485 The Applications component of Nokia IMPACT version through 19.11.2.10-20210118042150283 allows an authenticated user to arbitrarily upload server-side executable files via the /ui/rest-proxy/application fileupload parameter. This can occur during the adding of a new application, or during the editing of an existing one. [email protected] 8.0 0.06% 2026-03-03 2026-03-05
CVE-2021-35484 Nokia IMPACT through 19.11.2.10-20210118042150283 allows an authenticated user to perform a Time-based Boolean Blind SQL Injection attack on the endpoint /ui/rest-proxy/campaign/statistic (for the View Campaign page) via the sortColumn HTTP GET parameter. This allows an attacker to access sensitive data from the database and obtain access to the database user, database name, and database version information. [email protected] 8.2 0.01% 2026-03-03 2026-03-05
CVE-2021-35483 The Applications component of Nokia IMPACT version through 19.11.2.10-20210118042150283 allows an authenticated user to arbitrarily upload JavaScript files via the /ui/rest-proxy/application fileupload parameter. This can occur during the adding of a new application, or during the editing of an existing one. If an authenticated user visits the web page where the file is published, the JavaScript code is executed. [email protected] 4.1 0.02% 2026-03-03 2026-03-05
CVE-2019-17406 Nokia IMPACT < 18A has path traversal that may lead to RCE if chained with CVE-2019-1743 [email protected] 5.3 0.43% 2019-11-25 2024-11-21
CVE-2019-17405 Nokia IMPACT < 18A: has Reflected self XSS [email protected] 6.1 0.36% 2019-11-25 2024-11-21
CVE-2019-17404 Nokia IMPACT < 18A: allows full path disclosure [email protected] 4.3 0.27% 2019-11-25 2024-11-21
CVE-2019-17403 Nokia IMPACT < 18A: An unrestricted File Upload vulnerability was found that may lead to Remote Code Execution. [email protected] 8.8 4.37% 2019-11-25 2024-11-21
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence