CVE-2022-40713: Path Traversal
Published Sep 19, 2022
·Updated
An issue was discovered in NOKIA 1350OMS R14.2. Multiple Relative Path Traversal issues exist in different specific endpoints via the file parameter, allowing a remote authenticated attacker to read files on the filesystem arbitrarily.
Affected Software
1 affected component
Nokia 1350 Optical Management System=14.2
Event History
Sep 19, 2022
CVE Published
via MITRE·03:52 PM
Data Sourced
via MITRE·03:52 PM
Description
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2022-40713?
The severity of CVE-2022-40713 is medium with a CVSS score of 6.5.
2
How does CVE-2022-40713 affect NOKIA 1350OMS R14.2?
CVE-2022-40713 affects NOKIA 1350OMS R14.2 through multiple relative path traversal issues in specific endpoints.
3
How can a remote attacker exploit CVE-2022-40713?
A remote authenticated attacker can exploit CVE-2022-40713 by using the file parameter to read files on the filesystem arbitrarily.
4
Is there a fix available for CVE-2022-40713?
Currently, there is no information available about a fix for CVE-2022-40713. It is recommended to follow the vendor's advisories for updates.
5
What is the Common Weakness Enumeration (CWE) ID of CVE-2022-40713?
CVE-2022-40713 is associated with CWE-22 (Path Traversal).