Vulnerabilities (CVE)

Filtered by vendor Nokia Subscribe
Filtered by product G-040w-q
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-41353 1 Nokia 2 G-040w-q, G-040w-q Firmware 2023-11-13 N/A 8.8 HIGH
Chunghwa Telecom NOKIA G-040W-Q has a vulnerability of weak password requirements. A remote attacker with regular user privilege can easily infer the administrator password from system information after logging system, resulting in admin access and performing arbitrary system operations or disrupt service.
CVE-2023-41352 1 Nokia 2 G-040w-q, G-040w-q Firmware 2023-11-13 N/A 7.2 HIGH
Chunghwa Telecom NOKIA G-040W-Q has a vulnerability of insufficient filtering for user input. A remote attacker with administrator privilege can exploit this vulnerability to perform a Command Injection attack to execute arbitrary commands, disrupt the system or terminate services.