CVE-2021-45896: High severity nokia fastmile 5g receiver firmware vulnerability
Published Dec 27, 2021
·Updated
Nokia FastMile 3TG00118ABAD52 devices allow privilege escalation by an authenticated user via isctcadmin=1 to loginwebapp.cgi and use of Import Config File.
Affected Software
4 affected components
Nokia Fastmile Firmware=3tg00118abad52
Nokia Fastmile
All of the following
Nokia Fastmile Firmware=3tg00118abad52
Nokia Fastmile
Event History
Dec 27, 2021
CVE Published
via MITRE·09:22 PM
Data Sourced
via MITRE·09:22 PM
Description
Data Sourced
via NVD·10:15 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID is CVE-2021-45896.
2
What is the severity of CVE-2021-45896?
The severity of CVE-2021-45896 is high with a CVSS score of 8.8.
3
How does this vulnerability affect Nokia FastMile 3TG00118ABAD52 devices?
This vulnerability allows privilege escalation by an authenticated user via is_ctc_admin=1 to login_web_app.cgi and use of Import Config File in Nokia FastMile 3TG00118ABAD52 devices.
4
Is Nokia FastMile firmware version 3TG00118ABAD52 affected?
Yes, Nokia FastMile firmware version 3TG00118ABAD52 is affected.
5
How can I fix CVE-2021-45896?
To fix CVE-2021-45896, apply the latest firmware update provided by Nokia.