Total vulnerabilities in the database
An issue was discovered in NOKIA AMS 9.7.05. Remote Code Execution exists via the debugger of the ipAddress variable. A remote user, authenticated to the AMS server, could inject code in the PING function. The privileges of the command executed depend on the user that runs the service.
Software | From | Fixed in |
---|---|---|
nokia / access_management_system | 9.7.05 | 9.7.05.x |