CNNVD-202602-149 Information

CNNVD ID

CNNVD-202602-149

CVE-2025-9974

  • CNNVD Published: 2026-02-02

Description (Chinese)

Nokia ONT是芬兰诺基亚(Nokia)公司的一个光纤网络终端设备。 Nokia ONT存在安全漏洞,该漏洞源于其统一的WEBUI应用程序存在输入处理缺陷,可能导致经过身份验证的低权限用户执行任意系统级命令,影响设备的机密性、完整性和可用性。

Description (English)

Nokia ONT is a fibre-optic network terminal at Nokia, Finland. Nokia ONT had a security loophole, which stemmed from input-processing deficiencies in its unified WEBUI application, which could lead to the implementation of any system-level order by a low-authorized user with authentication, affecting the confidentiality, integrity and availability of the equipment.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

诺基亚

Published

2026-02-02

Last Modified

2026-02-24

References

https://www.nokia.com/we-are-nokia/security/product-security-advisory/cve-2025-9974/ https://access.redhat.com/security/cve/cve-2025-9974

Patch

https://www.nokia.com/we-are-nokia/security/product-security-advisory/cve-2025-9974/

Share on: