CVE-2025-24817: An OS Command Injection vulnerability in Nokia MantaRay NM
Published Apr 7, 2026
·Updated
Nokia MantaRay NM is vulnerable to an OS command injection vulnerability due to improper neutralization of special elements used in an OS command in Symptom Collector application.
Affected Software
2 affected components
Nokia MantaRay NM
Nokia MantaRay NM<25r1-nm
Event History
Apr 7, 2026
CVE Published
via MITRE·03:09 PM
Data Sourced
via MITRE·03:09 PM
Description
Data Sourced
via NVD·04:16 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-24817?
CVE-2025-24817 is classified as a high severity OS Command Injection vulnerability affecting Nokia MantaRay NM.
2
How do I fix CVE-2025-24817?
To fix CVE-2025-24817, apply the latest security patches provided by Nokia for the MantaRay NM software.
3
What systems are affected by CVE-2025-24817?
CVE-2025-24817 affects all versions of Nokia MantaRay NM prior to 25r1-nm.
4
What could happen if CVE-2025-24817 is exploited?
If exploited, CVE-2025-24817 could allow an attacker to execute arbitrary commands on the affected system.
5
Is a workaround available for CVE-2025-24817?
Currently, there is no documented workaround for CVE-2025-24817, so applying patches is recommended.