If Security Hardening guide rules are not followed, then Nokia WaveLite products allow a local user to create new users with administrative privileges by manipulating a web request. This affects (for example) WaveLite Metro 200 and Fan, WaveLite Metro 200 OPS and Fans, WaveLite Metro 200 and F2B fans, WaveLite Metro 200 OPS and F2B fans, WaveLite Metro 200 NE and F2B fans, and WaveLite Metro 200 NE OPS and F2B fans.
History

Fri, 20 Sep 2024 14:30:00 +0000

Type Values Removed Values Added
Weaknesses CWE-284
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2023-10-04T00:00:00

Updated: 2024-09-20T13:55:55.837Z

Reserved: 2023-01-04T00:00:00

Link: CVE-2023-22618

cve-icon Vulnrichment

Updated: 2024-08-02T10:13:49.370Z

cve-icon NVD

Status : Modified

Published: 2023-10-04T12:15:10.300

Modified: 2024-09-20T14:35:01.027

Link: CVE-2023-22618

cve-icon Redhat

No data.