CVE-2021-35485
Published Mar 3, 2026The Applications component of Nokia IMPACT version through 19.11.2.10-20210118042150283 allows an authenticated user to arbitrarily upload server-side executable files via the /ui…
Vendor/product archive
7 CVEs tagged to nokia / impact — 0 Critical, 3 High, 4 Medium, 0 Low, 0 Unrated.
The Applications component of Nokia IMPACT version through 19.11.2.10-20210118042150283 allows an authenticated user to arbitrarily upload server-side executable files via the /ui…
Nokia IMPACT through 19.11.2.10-20210118042150283 allows an authenticated user to perform a Time-based Boolean Blind SQL Injection attack on the endpoint /ui/rest-proxy/campaign/s…
The Applications component of Nokia IMPACT version through 19.11.2.10-20210118042150283 allows an authenticated user to arbitrarily upload JavaScript files via the /ui/rest-proxy/…
Nokia IMPACT < 18A has path traversal that may lead to RCE if chained with CVE-2019-1743
Nokia IMPACT < 18A: has Reflected self XSS
Nokia IMPACT < 18A: allows full path disclosure
Nokia IMPACT < 18A: An unrestricted File Upload vulnerability was found that may lead to Remote Code Execution.