CVE-2022-39821
—CVSS 3.1
7.5 high
EPSS
<1%p49
Published
()
Modified
Description
In NOKIA 1350 OMS R14.2, an Insertion of Sensitive Information into an Application Log File vulnerability occurs. The web application stores critical information, such as cleartext user credentials, in world-readable files in the filesystem.
- Vendors
- nokia
- Products
- 1350 optical management system
- Weakness
- CWE-532
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
In the news0 stories
No ingested article mentions this CVE yet.