ZeroHour

CVE-2022-39821

CVSS 3.1
7.5 high
EPSS
<1%p49
Published
()
Modified
Description

In NOKIA 1350 OMS R14.2, an Insertion of Sensitive Information into an Application Log File vulnerability occurs. The web application stores critical information, such as cleartext user credentials, in world-readable files in the filesystem.

Vendors
nokia
Products
1350 optical management system
Weakness
CWE-532
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.