CVE-2025-24818: An OS Command Injection vulnerability in Nokia MantaRay NM
Published Apr 7, 2026
·Updated
Nokia MantaRay NM is vulnerable to an OS command injection vulnerability due to improper neutralization of special elements used in an OS command in Log Search application.
Affected Software
2 affected components
Nokia MantaRay NM
Nokia MantaRay NM<25r1-nm
Event History
Apr 7, 2026
CVE Published
via MITRE·03:13 PM
Data Sourced
via MITRE·03:13 PM
Description
Data Sourced
via NVD·04:16 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-24818?
CVE-2025-24818 is classified as a critical severity OS Command Injection vulnerability.
2
How do I fix CVE-2025-24818?
To mitigate CVE-2025-24818, it is important to apply the latest patches provided by Nokia for the MantaRay NM software.
3
What software is affected by CVE-2025-24818?
CVE-2025-24818 affects Nokia MantaRay NM versions up to 25r1-nm.
4
What is the impact of CVE-2025-24818?
Exploitation of CVE-2025-24818 can allow attackers to execute arbitrary OS commands on the vulnerable system.
5
How can I detect CVE-2025-24818 on my systems?
To detect CVE-2025-24818, review your systems for the presence of Nokia MantaRay NM and check for any unpatched versions.