Nokia BTS TRS web console FTM_W20_FP2_2019.08.16_0010 allows Authentication Bypass. A malicious unauthenticated user can get access to all the functionalities exposed via the web panel, circumventing the authentication process, by using URL encoding for the . (dot) character.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Bts_trs_web_console | Nokia | ftm_w20_fp2_2019.08.16_0010 (including) | ftm_w20_fp2_2019.08.16_0010 (including) |