An issue was discovered in Nokia... CVE-2023-26059

- AV AC AU C I A
发布: 2023-04-24
修订: 2025-02-04

An issue was discovered in Nokia NetAct before 22 SP1037. On the Site Configuration Tool tab, attackers can upload a ZIP file which, when processed, exploits Stored XSS. The upload option of the Site Configuration tool does not validate the file contents. The application is in a demilitarised zone behind a perimeter firewall and without exposure to the internet. The attack can only be performed by an internal user.

0%
暂无可用Exp或PoC
当前有1条受影响产品信息