CVE-2019-17406: Path Traversal
Published Nov 25, 2019
·Updated
Nokia IMPACT < 18A has path traversal that may lead to RCE if chained with CVE-2019-1743
Affected Software
1 affected component
Nokia IMPACT<18a
Event History
Nov 25, 2019
CVE Published
via MITRE·03:03 PM
Data Sourced
via MITRE·03:03 PM
Description
Frequently Asked Questions
1
What is CVE-2019-17406?
CVE-2019-17406 is a vulnerability found in Nokia IMPACT < 18A that allows for path traversal which can lead to remote code execution (RCE) if chained with CVE-2019-1743.
2
How severe is CVE-2019-17406?
CVE-2019-17406 has a severity rating of medium with a CVSS score of 5.3.
3
What software is affected by CVE-2019-17406?
Nokia IMPACT versions up to and excluding 18A are affected by CVE-2019-17406.
4
What is the Common Weakness Enumeration (CWE) for CVE-2019-17406?
CVE-2019-17406 has a CWE classification of CWE-22.
5
How can CVE-2019-17406 be exploited?
CVE-2019-17406 can be exploited through path traversal, which may allow an attacker to access sensitive files and potentially execute remote code.