CVE-2019-17406
https://notcve.org/view.php?id=CVE-2019-17406
Nokia IMPACT < 18A has path traversal that may lead to RCE if chained with CVE-2019-1743 Nokia IMPACT versiones anteriores a 18A, presenta un salto de ruta que puede conllevar a RCE si se encadena con CVE-2019-1743. • https://www.nokia.com/networks/solutions/impact-iot-platform https://www.telecomitalia.com/tit/it/innovazione/cybersecurity/red-team.html • CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') •
CVE-2019-17405
https://notcve.org/view.php?id=CVE-2019-17405
Nokia IMPACT < 18A: has Reflected self XSS Nokia IMPACT versiones anteriores a 18A: presenta una vulnerabilidad de tipo XSS propio Reflejado. • https://www.nokia.com/networks/solutions/impact-iot-platform https://www.telecomitalia.com/tit/it/innovazione/cybersecurity/red-team.html • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •
CVE-2019-17404
https://notcve.org/view.php?id=CVE-2019-17404
Nokia IMPACT < 18A: allows full path disclosure Nokia IMPACT versiones anteriores a 18A: permite una divulgación de ruta completa. • https://www.nokia.com/networks/solutions/impact-iot-platform https://www.telecomitalia.com/tit/it/innovazione/cybersecurity/red-team.html • CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') •
CVE-2019-17403
https://notcve.org/view.php?id=CVE-2019-17403
Nokia IMPACT < 18A: An unrestricted File Upload vulnerability was found that may lead to Remote Code Execution. Nokia IMPACT versiones anteriores a 18A: Se encontró una vulnerabilidad de carga de archivos sin restricciones que puede conllevar a una ejecución de código remota. • https://www.nokia.com/networks/solutions/impact-iot-platform https://www.telecomitalia.com/tit/it/innovazione/cybersecurity/red-team.html • CWE-434: Unrestricted Upload of File with Dangerous Type •